Duaer

Integrations

Set up SSH credentials in Duaer

Store SSH connection details in Duaer for digital-organization nodes to use at runtime. Secrets are protected by the instance encryption key and are not written into node parameters.

Use a private key

For the Duaer SSH credential, prefer the SSH Private Key type:

  1. Generate a key pair on your own machine, for example with ssh-keygen -t ed25519.
  2. Append the public key (the .pub file contents) to ~/.ssh/authorized_keys for that user on the server.
  3. In the Duaer credential, fill in Host, Port (default 22), and Username, and paste the whole private key file into Private Key. Fill in Passphrase if the key has one.

The SSH Password type needs only a user name and password, but many servers turn password sign-in off. Give the account the digital organization uses only the rights it needs.

SSH Password

In Duaer, choose SSH Password when you create a credential, then fill in these fields:

  • Host (required)
  • Port (required): Default: 22.
  • Username
  • Password (secret)

Duaer nodes that use it: SSH.

SSH Private Key

In Duaer, choose SSH Private Key when you create a credential, then fill in these fields:

  • Host (required)
  • Port (required): Default: 22.
  • Username
  • Private Key (secret)
  • Passphrase (secret): Passphase used to create the key, if no passphase was used leave empty.

Duaer nodes that use it: SSH.

Save the connection in Duaer

Open Credentials and create SSH. Fill in the key, OAuth, or server fields. After you save, digital-organization nodes reference this credential instead of putting the secret in a parameter.

Credential values are protected by the instance encryption key. If you change or lose that key, stored credentials cannot be decrypted. See the hosting notes on encryption keys. The matching node is under the related node.

Who can use this credential

Who can see or edit it follows projects and roles. Do not paste secrets into chat or variables. External vaults are covered under external secrets.

Questions

Do SSH secret values appear in Duaer node parameters?

No. In Duaer, SSH secrets stay in the credential. Nodes only reference the credential. Execution records should not show the plaintext secret either.

What usually stops a SSH credential from saving in Duaer?

Wrong fields, an OAuth callback that does not match the instance URL, or a role that cannot create credentials. Check the fields SSH expects, then confirm you can create credentials in that project.

In this section