Infra SSH

Infra SSH is the audited host-operations layer inside infrastrActure.

It lets admins and internal operators inspect and operate infrastructure hosts through a controlled tool surface instead of raw shell access.

What It Covers

  • host inventory
  • named actions
  • approval-gated elevated access
  • bounded file operations
  • named forwards
  • audit logging

Model

Core Rules

  1. Infra SSH is admin-tier only.
  2. Elevated operations require an approval lease.
  3. Agents do not get raw SSH command execution.
  4. Host access is routed through named actions and bounded operations.
  5. Successful, denied, and failed operations are audited.
PagePurpose
Security Modeltiering, approval, and audit guarantees
Hosts and Actionshost inventory and named action model
Audit and Sessionsleases, audit records, and forward lifecycle