为ssh加个证书

2019-03-05 10:16:08 浏览数 (1)

Using username "root".Authenticating with public key "imported-openssh-key"Passphrase for key "imported-openssh-key":Last login: Mon Nov 9 09:54:25 2009 from 192.168.3.135OpenBSD 4.6 (GENERIC) #58: Thu Jul 9 21:24:42 MDT 2009Welcome to OpenBSD: The proactively secure Unix-like operating system.Please use the sendbug(1) utility to report bugs in the system.Before reporting a bug, please try to reproduce it with the latestversion of the code. With bug reports, please try to ensure thatenough information to reproduce the problem is enclosed, and if aknown fix for it exists, include that as well.10:11AM up 42 mins, 3 users, load averages: 0.12, 0.09, 0.08USER TTY FROM LOGIN@ IDLE WHATroot C0 - 9:29AM 20 -bashroot p0 192.168.3.135 9:50AM 0 -bashroot p1 192.168.3.135 10:11AM 0 w   November 2009Su Mo Tu We Th Fr Sa 1 2 3 4 5 6 7 8 9 10 11 12 13 1415 16 17 18 19 20 2122 23 24 25 26 27 2829 30[root@liuqi ~]#

用证书登陆

首先生成一个公钥和一个私钥

[root@liuqi ~]#ssh-keygen -b 1024 -t dsaGenerating public/private dsa key pair.Enter file in which to save the key (/root/.ssh/id_dsa):Enter passphrase (empty for no passphrase):Enter same passphrase again:Your identification has been saved in /root/.ssh/id_dsa.Your public key has been saved in /root/.ssh/id_dsa.pub.The key fingerprint is:ba:71:52:87:11:cd:74:8a:bc:91:ba:a3:51:af:95:77 root@liuqi.cutbagThe key

然后做一个ssh服务端的公钥证书

cat id_rsa.pub > authorized_keys

接着配置一下ssh服务配置文件/etc/ssh/sshd_config

把如下几句注释掉的内容打开

RSAAuthentication yesPubkeyAuthentication yesAuthorizedKeysFile .ssh/authorized_keys

然后将私钥id_rsa文件copy到windows里,把内容copy到一个新的文本文件里。

然后在windows下用puttygen生成新文件,就可以了

0 人点赞