Linux配置遠(yuǎn)程SSH無(wú)密碼登錄
本文實(shí)例為大家分享了jaLinux配置遠(yuǎn)程SSH無(wú)密碼登錄的方法,供大家參考,具體內(nèi)容如下
系統(tǒng):CentOS 6.8
主機(jī)1:192.168.0.177
主機(jī)2:192.168.0.178
工具介紹:
ssh-keygen:創(chuàng)建公鑰和密鑰
ssh-copy-id:把生成的公鑰復(fù)制到192.168.0.178主機(jī)上的authorized_keys文件上,
ssh-copy-id也會(huì)給遠(yuǎn)程主機(jī)的用戶主目錄(/home)和/root/.ssh和/root/.ssh/authorized_key設(shè)置合適的權(quán)限
1)創(chuàng)建公鑰和密鑰
[root@test ~]# ssh-keygen -t rsa Generating public/private rsa key pair. Enter file in which to save the key (/root/.ssh/id_rsa): Enter passphrase (empty for no passphrase): Enter same passphrase again: Your identification has been saved in /root/.ssh/id_rsa. Your public key has been saved in /root/.ssh/id_rsa.pub. The key fingerprint is: 79:a9:66:cd:1a:a5:7c:82:80:c3:06:ec:44:13:b9:7a root@test The key's randomart image is: +--[ RSA 2048]----+ | +o | |o.. | |.o. | |o+ . . . | |..= . S + | |..E. . o B | | . . O + | | o = | | . | +-----------------+
[root@test ~]#
2)拷貝公鑰到遠(yuǎn)程主機(jī)
[root@test ~]# ls .ssh/ authorized_keys id_rsa id_rsa.pub [root@test ~]# [root@test ~]# ssh-copy-id -i /root/.ssh/id_rsa.pub root@192.168.0.178 The authenticity of host '192.168.0.178 (192.168.0.178)' can't be established. RSA key fingerprint is 53:bd:d7:e6:27:96:f3:70:f1:4b:4d:35:a4:38:1d:69. Are you sure you want to continue connecting (yes/no)? YES Warning: Permanently added '192.168.0.178' (RSA) to the list of known hosts. root@192.168.0.178's password: Now try logging into the machine, with "ssh 'root@192.168.0.178'", and check in: .ssh/authorized_keys to make sure we haven't added extra keys that you weren't expecting. [root@test ~]#
3)測(cè)試遠(yuǎn)程連接
[root@test ~]# ip addr show 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 inet 127.0.0.1/8 scope host lo inet6 ::1/128 scope host valid_lft forever preferred_lft forever 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000 link/ether 00:0c:29:7e:1f:f6 brd ff:ff:ff:ff:ff:ff inet 192.168.0.177/24 brd 192.168.0.255 scope global eth0 inet6 fe80::20c:29ff:fe7e:1ff6/64 scope link valid_lft forever preferred_lft forever [root@test ~]# [root@test ~]# ssh 192.168.0.178 Last login: Sat Sep 24 14:00:49 2016 from 192.168.0.103 [root@test ~]#ip addr 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 inet 127.0.0.1/8 scope host lo inet6 ::1/128 scope host valid_lft forever preferred_lft forever 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000 link/ether 00:0c:29:36:93:06 brd ff:ff:ff:ff:ff:ff inet 192.168.0.178/24 brd 192.168.0.255 scope global eth0 inet6 fe80::20c:29ff:fe36:9306/64 scope link valid_lft forever preferred_lft forever
查看192.168.0.177生成的authorized_keys
[root@test .ssh]# cat authorized_keys ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA+I6LXDE5DvSmQJcX98FpzScXoGpJ6fD47yXzp/tp/HTpOTQgNbiTjH6s6yNMsd5LQlBED8a5CTx5wKm+H7rT0po2xD+AZcF69js+4SwO8/xFwHLZ/8O64hsvn68GmxqO9vP8giWWcZNy/CsmOecllOB1NFXpCwQ1TBw+P4n84oj2YHwdSzGcre8j/OiAChHl6QHFtAuFvOdVRYFeyurFM8KP6Bb6tEeDDrqILboaQtTJOwRD2Fkt33C5lpuZNNGqc+DmRjDabgC3ZgzRCe3OyYbhaRlfiwVHFPYt7pDQMnrp/dUmyBSs/6gwd2CiK3cV4ZvpOzyGdynPqXsxIIBIKw== root@test
到此信任添加就完成了,192.168.0.177就可以無(wú)密碼遠(yuǎn)程登錄192.168.0.178服務(wù)器了,如果要想實(shí)現(xiàn)雙向信任請(qǐng)?jiān)?92.168.0.178
重復(fù)以上步驟,寫(xiě)本文目的只是想把會(huì)的東西記錄下來(lái),以備遺忘之時(shí)查閱!
以上就是本文的全部?jī)?nèi)容,希望對(duì)大家的學(xué)習(xí)有所幫助,也希望大家多多支持腳本之家。
相關(guān)文章
linux中關(guān)于ftp查看不到文件列表的問(wèn)題詳解
下面小編就為大家?guī)?lái)一篇linux中關(guān)于ftp查看不到文件列表的問(wèn)題詳解。小編覺(jué)得挺不錯(cuò)的,現(xiàn)在就分享給大家,也給大家做個(gè)參考。一起跟隨小編過(guò)來(lái)看看吧2016-11-11解決ubuntu安裝軟件時(shí),status-code=409報(bào)錯(cuò)的問(wèn)題
這篇文章主要介紹了解決ubuntu安裝軟件時(shí),status-code=409報(bào)錯(cuò)的問(wèn)題,具有很好的參考價(jià)值,希望對(duì)大家有所幫助。如有錯(cuò)誤或未考慮完全的地方,望不吝賜教2022-12-12CentOS環(huán)境下安裝Redis3.0及phpredis擴(kuò)展測(cè)試示例
這篇文章主要介紹了CentOS環(huán)境下安裝Redis3.0及phpredis擴(kuò)展測(cè)試,結(jié)合實(shí)例形式分析了CentOS下Redis安裝相關(guān)步驟、命令及phpredis擴(kuò)展的測(cè)試代碼,需要的朋友可以參考下2018-04-04解決生產(chǎn)環(huán)境遇到的curl和yum命令報(bào)錯(cuò)問(wèn)題
在銀河麒麟V10SP2arm64系統(tǒng)下,升級(jí)sshd服務(wù)同時(shí)升級(jí)了openssl至1.1.1l版本,導(dǎo)致curl和yum命令報(bào)錯(cuò),分析原因是openssl版本與libcurl.so.4文件不兼容,嘗試修復(fù)無(wú)效后,通過(guò)重新編譯安裝curl解決問(wèn)題,建議在升級(jí)openssl時(shí)謹(jǐn)慎2024-09-09Linux中搭建完整的samba服務(wù)器全攻略(centos版)
smb是一個(gè)協(xié)議名,它能被用于Web連接和客戶端與服務(wù)器之間的信息溝通。這篇文章主要介紹了Linux中搭建samba服務(wù)器全攻略(centos版),需要的朋友可以參考下2018-11-11Centos8環(huán)境下修改ssh端口號(hào)方法
大家好,本篇文章主要講的是Centos8環(huán)境下修改ssh端口號(hào)方法,感興趣的同學(xué)趕快來(lái)看一看吧,對(duì)你有幫助的話記得收藏一下哦,方便下次瀏覽2021-12-12