Hello Gravitational community,
As far as I know, Teleport (v4.0.x) is saving session binary logs either on the “node” server, on a “proxy” server or not at all as per the config file key
There’s doesn’t seems to be an easy way to keep those session logs on the client machine they originated which is problematic for our use case since if you access sensitive data on the client machine running Teleport during a
tsh session, this data will be copied along with the session logs back to the Bastion machine (the “node”)
Am I the only one with the issue ? Any workarounds to still have session logs but keep them on the client ?
Using a 3rd party storage is not ideal for our use case, data should stay on the client machine.
Promoting our clients to act as proxies seems overkill as our Teleport clients are just that … bare minimum clients while our Bastion handle the authentication & so on.