No Shared Passwords, No Standing Access
The problem
- Passwords and long-lived keys for accessing servers tend to spread across a team and rarely get cleaned up — a real risk if one leaks or someone leaves.
The solution
- Every login to a Gough-managed server, and every connection between Gough’s own services, is short-lived and issued automatically — nothing to distribute, remember, or forget to rotate.
Outcomes
- No standing passwords or long-lived keys anywhere in the deployment.
- Remote access is time-boxed and expires on its own — an old credential simply stops working instead of quietly remaining valid.