Hey, I'd like to define an SSH key for my Bitbucket repo access which would be allowed to push from a particular fixed IP (or even a range), but no other. Is that possible?
The rationale here is that I need to automate pushing to the Bitbucket repos for some repos of which the master is located elsewhere. However, I will not upload my unsecured private key to the machine doing this updating. Instead I'd like to create some key and limit its scope. The private key used in automation will obviously have to be without a passphrase.
I know that .ssh/authorized_keys (as used by OpenSSH) allows exactly this behavior, so I am hoping Bitbucket somehow allows to make use of this feature.
Please note: this question is about the Bitbucket service. I do know how to implement this if I have full control of the server-side.
It sounds like you are looking for https://bitbucket.org/site/master/issue/5661/support-openssh-style-host-constraints. We don't have this on our roadmap now, but your comments are welcome on the issue to help us gauge interest.
SSH keys are already very secure but if you want to limit access to ssh only to a sepcific ip or range of ip's I would simply define it the iptables
it would look something like the following (Where 126.96.36.199 would be the IP of the server take will be connecting)
-A INPUT -s 188.8.131.52 -i eth0 -p tcp -m tcp --dport 22 -m state --state NEW -j ACCEPT
Thanks for taking the time to respond, Nick. Perhaps I was unclear about my intention. I am actually looking for this feature on the Bitbucket side. I.e. Bitbucket should only accept this particular key from a particular IP or range of IPs. I could not find it in the account settings, so I am asking here.
Badges are a great way to show off community activity, whether you’re a newbie or a Champion.Learn more
...staring into the background. Once the image pops out in 3D, you can look around the picture and enjoy. If you will see if you are a true illusion master! :) You did it? :) Wow! Awesome! As a bonus...
Connect with like-minded Atlassian users at free events near you!Find a group
Connect with like-minded Atlassian users at free events near you!
Unfortunately there are no AUG chapters near you at the moment.Start an AUG
You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs