I understand how to deploy OPA with Ansible to my Linux servers.
If I lock the server down such that only OPA managed accounts can access it by SSH (e.g. accepts SSH only from the OPA gateways), how do I allow Ansible to connect to it for ongoing maintenance tasks? What is Okta’s recommendation/best practice for using automation tools (like Ansible) for servers managed by OPA?
Thank you for reaching out here on the Okta Developer Forum. We noticed that your question is more closely related to Okta Privileged Access(OPA). To ensure you receive the most accurate and timely assistance, we recommend reposting your query on Okta’s Community at: Okta Help Center (Lightning)
Okta’s teams on the Community are better equipped to provide the comprehensive support and guidance you need as they have the specialised knowledge and expertise in OPA.