ºìÁªLinuxÃÅ»§
Linux°ïÖú

CentOS SSHÎÞÃÜÂëµÇ½

·¢²¼Ê±¼ä:2014-07-14 09:37:55À´Ô´:ºìÁª×÷Õß:velcbo
Ò»¡¢»·¾³ÅäÖÃ

1¡¢·þÎñ¶Ë£ºCentOS release 5.3 IP£º222.73.115.198

2¡¢¿Í·þ¶Ë£ºCentOS release 5.8 IP£º192.168.4.244

¶þ¡¢ÅäÖÃSSHÎÞÃÜÂëµÇ¼ÐèÒª3²½£º
1¡¢Éú³É¹«Ô¿ºÍ˽Կ
2¡¢µ¼È빫Կµ½ÈÏÖ¤Îļþ,¸ü¸ÄȨÏÞ
3¡¢²âÊÔ

Èý¡¢¿Í»§¶ËÅäÖÃ

1¡¢ÔÚ¿Í»§¶ËÉú³É˽ԿÓ빫Կ£»

# ssh-keygen

[root@jw02 ~]# ssh-keygen
Generating public/private rsa key pair.
Enter file in which to save the key (/root/.ssh/id_rsa): #»Ø³µ£¨´ú±íÎÞÐèÃÜÂëµÇ½£©
Enter passphrase (empty for no passphrase): #»Ø³µ
Enter same passphrase again: #»Ø³µ
Your identification has been saved in /root/.ssh/id_rsa. #´ú±í˽Կ
Your public key has been saved in /root/.ssh/id_rsa.pub. #´ú±í¹«Ô¿
The key fingerprint is:
04:45:0b:47:10:92:0c:b2:b9:d7:11:5b:49:05:e4:d9 root@jw02
[root@jw02 ~]# ls ~/.ssh/
id_rsa id_rsa.pub known_hosts

2¡¢Ä¬ÈÏÔÚ ~/.ssh»òÕß/root/.ssh/Ŀ¼Éú³ÉÁ½¸öÎļþ£º
¹«Ô¿Îª£ºid_rsa.pub
˽ԿΪ£ºid_rsa

Èý¡¢·þÎñÆ÷µÄÅäÖÃ

1¡¢½«¿Í»§¶ËµÄ¹«Ô¿id_rsa.pub¸´ÖƵ½·þÎñÆ÷/home/ken/.ssh/authorized_keys£»

[root@mon .ssh]# cd
[root@mon ~]# cd /home/ken/.ssh/
[root@mon .ssh]# ll
total 12
-rw-r--r-- 1 ken ken 1192 Feb 5 13:17 authorized_keys
-rw-r--r-- 1 ken ken 5720 Feb 5 14:03 known_hosts
[root@mon .ssh]# vim authorized_keys
ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAu3FLhX1VlMQvuxVq8RAfdYEZwYwvorJN/iYkZXOz/itUB6OhO+oIUCcyvaSEHVVOeaPlmcau8HtuBp1V2SmwVl8LpRNYRgeUkSnQKFbjm7z2ALkuL4wAuCC8dcoEflzAOysZfjxoF2h1jPl2pwPd2CWlmPcN5l1kjhpQGJHzgfkkrsC2VR4KJkeqGVckdaKTvBdwElKrwugQhBllWkhsHq+xfoHoQz3n+Jjclpf0vN4z5WRq5+x68akYEG2Sm1s+iYYxO0oOoCJNSEQY7wz1U5q84kwG+0tnPfZDNwIa3ImrEiq6eqdZ5L/rZzht+Hv95t3K39TUKNRbiXXaW+1LsQ== root@localhost.localdomain

ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAwO3o13oscFLnBlzFGPLNkJVNQd1LW2ff/EG0CFjZmw5e2ClqW1YV9fcrPMG4ifmXwmmuF8Ns9WcQAQU/S6RfKHytwHvgpNCeOamzkcfVchHLunk1IDsW3eWARBhKxxdK4pOatPJzcsGtdrBl/ba7W6Z6uYVMlgQzQK7hxI4gXyh6jxvn4gIJZTBvhfMCM1oki+eA38qZZ6zdCfjDc617kHeINQRkSIaUxikReL8X7RigiBPACohfNzKtImZca2oO5EHtDv1b4GuUMFwYSa//EMcwDug9pMQ2LMrOSxgWBokZxq3r/7bybZT+9eGvnwNYoZSej0/qq8A43rhnhXF4pQ== root@dev

ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA17tmVraR6bpJXZVw7RH+uW3DjVRCv5itVP/9lgO2JePNwqPEy+SShZrlbjq/umziaEow5OrgYHWxlf2V1cqKhk2TR4y9ZD9B5lQTHudZO4I+JMV7wU/oEdBNl5S5RzYOIds6PnGUAEqmeCSLu3ozWZq0vDTokoLo41IdcgcLR1sqTOOViBP6oJKT5gG3ws96oe3c0s9irhuzAVE3zV3sptldRBDLKJSB+oXgpugE1WTEi6mGuNVgQc3VRZEWKNyAizVUJprGEZ2nBTeJGJb6NPRFcoNs9OdLpeSEXN/HsRLaMfJ6QMWC90azmmrDFm5BSxqntr+q6DVGGFILQWmPMw== root@jw02
[root@mon .ssh]#

2¡¢Èç¹ûûÓÐÕâ¸öĿ¼µÄ»°£¬Ôò# mkdir -p /root/.ssh

3¡¢¸ü¸ÄÎļþ¼ÐÒÔ¼°ÎļþȨÏÞ

[root@jw02 ~]#chmod 700 ~/.ssh
[root@jw02 ~]#chmod 600 ~/.ssh/authorized_keys

4¡¢ÖØÐÂÆô¶¯SSH·þÎñ

[root@jw02 ~]# service sshd restart

ËÄ¡¢²âÊÔ

[root@jw02 script]# sftp -oPort=511190 ken@222.73.115.198
Connecting to 222.73.115.198...
sftp>

Èç¹ûûÓÐÊäÈëÃÜÂëµÄÌáʾ¾ÍÊdzɹ¦ÁË£¡

×÷Õߣºkuangling
ÎÄÕÂÆÀÂÛ

¹²ÓÐ 0 ÌõÆÀÂÛ