Home PC Games Linux Windows Database Network Programming Server Mobile  
           
  Home \ Linux \ Linux environment SSH login password instead of using the RSA Certificate     - Making Linux root file system problems on-link library (Programming)

- How to create an alternative Android / iOS connected wireless hotspot AP in Ubuntu 15.04 (Linux)

- C ++: Postmodern systems programming language (Programming)

- Linux basis: a comprehensive study pwd command (Linux)

- Process safety monitoring and protection under the Linux operating system (Linux)

- Linux Log File Browser --logrotate (Linux)

- Linux command line under HTTP traffic sniffing tool: httpry (Linux)

- How to clean up your Ubuntu 14.10 / 14.04 / 13.10 system (Linux)

- Using Oracle for Oracle GoldenGate to achieve a one-way data synchronization (Database)

- Restrict console access to Linux servers to improve security (Linux)

- Grading defense against Linux server attacks (Linux)

- MongoDB3.0.6 wiredtiger MMAPv1 (Database)

- Java memory mechanism Description (Programming)

- PHP parsing algorithm of the interview questions (Programming)

- Install Oracle database error process of [INS-35172] (Database)

- Python-- for anomalies and reflection of objects articles (Programming)

- LinSSID: a graphical Wi-Fi scanner under Linux (Linux)

- Python console achieve progress bar (Programming)

- Qt for file splitting and fusion gadgets (Programming)

- Using Python and OpenCV detecting image barcode (Programming)

 
         
  Linux environment SSH login password instead of using the RSA Certificate
     
  Add Date : 2017-08-31      
         
         
         
  When you use the cvs command in Linux, pay per submission, inquiry status, and update operations must enter a password, it is inconvenient. There is no way not to enter a password?

Of course, SSH supports multiple authentication methods, we can use public and private way to certification. Here to introduce specific practices, assuming that two Linux servers: server1 and server2, our users dboper Case (ie both servers have dboper create user).

On server1, log on to dboper. Run the following command:

ssh-keygen -d

Generating public / private dsa key pair.

Enter file in which to save the key (/home/wuysh/.ssh/id_dsa): (default value, press Enter)

Enter passphrase (empty for no passphrase): (no password, enter)

Enter same passphrase again: (carriage return)

Your identification has been saved in /home/wuysh/.ssh/id_dsa.

Your public key has been saved in /home/wuysh/.ssh/id_dsa.pub.

The key fingerprint is:

b2: a4: 92: 12: 7f: 15: 9b: 89: 48: 2a: 7c: 3a: d6: 17: ea: ab dboper@localhost.localdomain

This generates the following two files in the user's .ssh directory:

id_dsa

id_dsa.pub

In the user's .ssh directory, copy into authorized_keys2 id_dsa.pub file and authorized_keys2 600, document properties to read and write permissions to your users, user groups and other users read and write prohibited.

cp id_dsa.pub authorized_keys2

chmod 600 authorized_keys2

Then on server2, also dboper login, also perform the above operation again.

Thus, on both servers generate a user's public key and private key, the next step is to perform mutual authentication. That public key into the other server.

letter recognition server2 server1, namely server1 server2 login without entering a password:

Copy the id_dsa.pub server1 to server2 (Do not cover id_dsa.pub server2 on), copy into id_dsa.pub_server1. Then add content id_dsa.pub_server1 to authorized_keys2 file dboper user .ssh directory on server2 in

cat id_dsa.pub_server1 >> authorized_keys2

OK, now you're on server1 to dboper user to log on server2, you will not need a password.

ssh dboper @ server2

Immediate access without a password prompt.

If you want to recognize letters on server1 server2, by the above method, add the id_dsa.pub server2 on the contents of the file to authorized_keys2 users on server1 under the .ssh directory.
     
         
         
         
  More:      
 
- Install Java on RHEL6 (Linux)
- Puppet 3.x installed on Debian 7 (Server)
- ogg start being given libnnz11.so: can not open shared object file (Database)
- Java, on the dfile.encoding Systemproperty (Programming)
- Linux System Tutorial: How to Check MariaDB server versions (Database)
- Create RAID 1 (mirroring) with two disks (Linux)
- MySQL TIMESTAMP and DATETIME (Database)
- JavaScript function definition mode (Programming)
- JavaScript subarray Deduplication (Programming)
- Linux virtual machine settings network, hostname ssh access (Linux)
- Using IPFilter bridge filter in the FreeBSD system (Linux)
- Linux check disk parameters trapping lack amendments (Linux)
- RedHat Linux 6.5 Enterprise Edition installation Redis 3.0.3 (Database)
- Ubuntu ADSL dial-up Internet access (Linux)
- Linux System Getting Started Learning: Repair (Linux)
- Build Docker based MongoDB replication cluster environment (Database)
- mysqldump MySQL command-line tool (Database)
- Linux, Eclipse flash back and reinstall the JDK methods (Linux)
- MySQL 5.7 can not log in problem (Database)
- Android Studio and Git Git configuration file status (Linux)
     
           
     
  CopyRight 2002-2022 newfreesoft.com, All Rights Reserved.