ssh-keygen -m PEM -t rsa -b 3072
目标服务器操作系统为openEuler 22.03时,需要使用其它安全的加密算法,例如:ssh-keygen -m PEM -t ecdsa -b 521生成公私钥对。
目标服务器操作系统为openEuler 22.03 (LTS-SP1)时,需要使用其它安全的加密算法,例如:ssh-keygen -m PEM -t ed25519 -b 521生成公私钥对。
目标服务器操作系统为openEuler 22.03 (LTS-SP2)时,需要使用其它安全的加密算法,例如:ssh-keygen -m PEM -t ed25519 -b 521生成公私钥对。
过程中需要:
回显信息如下:
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 | Generating public/private rsa key pair. Enter file in which to save the key (C:\Users\username\.ssh\id_rsa): Enter passphrase (empty for no passphrase): Enter same passphrase again: Your identification has been saved in C:\Users\username\.ssh\id_rsa. Your public key has been saved in C:\Users\username\.ssh\id_rsa.pub. The key fingerprint is: SHA256:rCRpryf6uZU+dQd/S8WN1azvay58zi3gtb53gayhvO8 china\username@HGHY4USERNAME The key's randomart image is: +---[RSA 3072]----+ | ..| | +| | =.| | . . . o +| | + . S o. .o | | . + o. ..+o+..| | =....o+= +.| | .=o o ..o=o=| | .o=+.. .+E .OO+| +----[SHA256]-----+ |
将公钥文件放至“/home/操作系统用户名/.ssh”目录下,将公钥文件“id_rsa.pub”名字改为 。
如已存在此“authorized_keys”文件,将公钥文件内容复制至 文件中即可。
chmod 600 /home/操作系统用户名/.ssh/authorized_keys
cat /etc/ssh/sshd_config
检查以下两处开关:
PubkeyAuthentication yes
RSAAuthentication yes
如若不是“yes”将上述开关设为“yes”后保存配置文件并重启sshd服务。
该步骤必须在root用户下执行,若以普通系统用户登录,需要执行su切换到root用户下执行后续操作。
1 | ssh-keygen -t rsa -b 4096 |
过程中需要:
回显信息如下:
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 | Generating public/private rsa key pair. Enter file in which to save the key (/root/.ssh/id_rsa): /root/.ssh/id_rsa already exists. Overwrite (y/n)? y Enter passphrase (empty for no passphrase): Enter same passphrase again: Your identification has been saved in /root/.ssh/id_rsa. Your public key has been saved in /root/.ssh/id_rsa.pub. The key fingerprint is: SHA256:g8T/XaRUqANpuIjxnI34In89+R68QckZPw7eyEaCU+o root@host11 The key's randomart image is: +---[RSA 4096]----+ | . . .. | | . .. + .. | | * =+o.. .. . | | o *=o+ =o. o | | .+ o S o.. . | |. .... B B o . | | o .E. .O + . | | . . +. + | | . ++ | +----[SHA256]-----+ |
1 | ssh-copy-id -i /root/.ssh/id_rsa.pub root@Server IP |
过程中需要输入节点服务器对应用户的密码。
1 | cp /root/.ssh/id_rsa /home/devkit |
1 | chown devkit:devkit /home/devkit/id_rsa |