Cockpit now supports single sign on authentication via kerberos, including Active Directory and IPA domains.
The initial support is included in Cockpit 0.25. Further work will be merged in the new few days related to delegating credentials when Cockpit connects out to other machines.
If you want to try it out you can get a Fedora build here:
https://admin.fedoraproject.org/updates/cockpit-0.25-1.fc21
Or the source build here:
https://github.com/cockpit-project/cockpit/releases/tag/0.25
SSO documentation here:
http://files.cockpit-project.org/guide/sso.html
Troubleshooting here:
https://github.com/cockpit-project/cockpit/blob/master/HACKING.md#setting-up...
Cheers,
Stef
cockpit-devel@lists.fedorahosted.org