frdev server and mysql and Civi access for jkumalah
Jerrie has just started and will require frdev server and mysql access as well as civi access. Approval was granted in T232080.

To do so, we will need to get Jerrie a Yubikey and have her generate an ssh keypair.

Instructions for generating ssh keys and setting up the host config are on the ssh client config page:

Once the keypair is generated, that can get added to the user config and pushed out to the servers. We can also add the public side of the yubikey to the config once she has that.

Thank you @Dwisehaupt ! Are you able to send Jerrie a Yubikey this week? I have added her contact details to the collab page

Thanks much!

Update : I spoke to Jerrie and she's already recieved her Yubiekey! Thank you, team!! She's excited to get setup in our systems this week. Thank you for following up with her on next steps.

Please let me know if this is the information I need to provide

Yubikey - ccccccktnfcu

SSH Keypair info -

Jerries-MacBook-Pro:~ jkumalah$ ssh-keygen -t rsa -b 4096 -C ""
Generating public/private rsa key pair.
Enter file in which to save the key (/Users/jkumalah/.ssh/id_rsa): /Users/jkumalah/.ssh/fr_id_rsa
Enter passphrase (empty for no passphrase):
Enter same passphrase again:
Your identification has been saved in /Users/jkumalah/.ssh/fr_id_rsa.
Your public key has been saved in /Users/jkumalah/.ssh/
The key fingerprint is:
The key's randomart image is:
+---[RSA 4096]----+

= o B +.+==B=.
. * o o + .+=o.
o E o o.oo
S . =.
o . . .
* .
o o

Jerries-MacBook-Pro:~ jkumalah$

I will start to stage the yubikey data as that is correct. I have emailed @jkumalah to clarify the steps for generating the ssh keypair and what information is needed.

Here is the ssh key

ssh-rsa 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

That is perfect. Added the yubikey and ssh public keys to the config and pushed it out.

[frack::puppet::private] a0ed3d6 Adding ssh key and yubikey for jkumalah

Spent some time with Jerrie this morning and she has working ssh access. I need to send her some additional documentation on ssh to assist her.

I forwarded on some useful information for using the ssh-agent to help reduce repetative entries of the ssh-passphrase.

I just updated this task to include civi access.

Thanks DStrine. Just a heads up that Erin will need the same access.

Hey all. I'm reopening this. @jkumalah doesn't seem to have a civi cert yet.

Added a civi user id - just need the cert now

Just got approval from Lisa. See attached email below

Yes, I approve. Thanks! -Lisa

On Mon, Oct 21, 2019 at 2:30 PM Jerrie Kumalah <> wrote:
Hi Lisa,

I was told I would need your approval to get an ssl certificate for CiviCrm access. Could you please approve access whenever you can ? Thanks for your help! Once approved Dallas or someone from fr-tech should be able to help me complete the process.



SSL client cert has been created and emailed along with installation instructions. The password has been sent via SMS. Please let me know if you have any questions about installing it in the browser.