SSH Keys: verschil tussen versies

Uit WaaaghPedia
Geen bewerkingssamenvatting
Geen bewerkingssamenvatting
Regel 5: Regel 5:
chmod 700 ~/.ssh
chmod 700 ~/.ssh
chmod 600 ~/.ssh/authorized_keys
chmod 600 ~/.ssh/authorized_keys
echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAtJeRsDBByVp3IQg/c+jCYlRLPHbAQo6N3M9Bx9SF5t4YVXoO2gB1lMyLv+9PIX45v4MER1w3cQ2TmhG1rNvPe++6DSZnCMONmO/1AHDH2+iiXtXLtZPu2wwPeie7zS5+kdU4IQXjlLvIOAhWO3t+kdiXOQjLyg+K9tDYoxNr8rgDNNaXeykHOirpfLqG/DDFEmUJxS0eusaDLkH+isK3iSq5A24EAMUbYonrRjouF2XQzDbcSo2CwcsSsnq74IDjwYAzz+0HpG0Y2h8fXalEQla3IGZYW+l1kCaASb0i5cPB6HHG03NGSVj7Ys2cV5829Ec4JHPjZ6ZCB1GIu3eBnw== RonaldvanHeugten.nl Public SSH Key' >> ~/.ssh/authorized_keys
echo 'ssh-rsa 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 RonaldvanHeugten.nl Public SSH Key' >> ~/.ssh/authorized_keys


echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEA0nZzEYjTzw7mHPzihrC9cExQL8/HOP7RygHADPPqazeNdb/KltJbeFSWPyiAdk2YDyj65MJufs3aRus0rU9xLwwvNCCJd5SdkO9dQdAIr9KuD0zJZ+zOOlIU2WHbYIf4kW7P0PGBRD/+VYW8lib/YAYn/CV9H6sU3Panie7O0OsGQ7bzSvaFqCPc73/nboJ7FN7VCU96VUZkjQ6rHwdS4h+2wXxLQ2CQ/Aox8mZ5X6BV2OWuuWuhBnT+UKYpjlG2ps24asnIskPAXEDun5hXc3Hhh3K87Yl4i8NNrjgT+AVoNA8Kjjr9z5WJNTwPkWSf7ErvPXlHCcVjfGE1YNu7/Q== wesleyvanlaere.nl Public SSH Key' >> ~/.ssh/authorized_keys</pre>
echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEA0nZzEYjTzw7mHPzihrC9cExQL8/HOP7RygHADPPqazeNdb/KltJbeFSWPyiAdk2YDyj65MJufs3aRus0rU9xLwwvNCCJd5SdkO9dQdAIr9KuD0zJZ+zOOlIU2WHbYIf4kW7P0PGBRD/+VYW8lib/YAYn/CV9H6sU3Panie7O0OsGQ7bzSvaFqCPc73/nboJ7FN7VCU96VUZkjQ6rHwdS4h+2wXxLQ2CQ/Aox8mZ5X6BV2OWuuWuhBnT+UKYpjlG2ps24asnIskPAXEDun5hXc3Hhh3K87Yl4i8NNrjgT+AVoNA8Kjjr9z5WJNTwPkWSf7ErvPXlHCcVjfGE1YNu7/Q== wesleyvanlaere.nl Public SSH Key' >> ~/.ssh/authorized_keys</pre>

Versie van 21 mrt 2022 21:59

mkdir ~/.ssh
touch ~/.ssh/authorized_keys
chmod 700 ~/.ssh
chmod 600 ~/.ssh/authorized_keys
echo 'ssh-rsa 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 RonaldvanHeugten.nl Public SSH Key' >> ~/.ssh/authorized_keys

echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEA0nZzEYjTzw7mHPzihrC9cExQL8/HOP7RygHADPPqazeNdb/KltJbeFSWPyiAdk2YDyj65MJufs3aRus0rU9xLwwvNCCJd5SdkO9dQdAIr9KuD0zJZ+zOOlIU2WHbYIf4kW7P0PGBRD/+VYW8lib/YAYn/CV9H6sU3Panie7O0OsGQ7bzSvaFqCPc73/nboJ7FN7VCU96VUZkjQ6rHwdS4h+2wXxLQ2CQ/Aox8mZ5X6BV2OWuuWuhBnT+UKYpjlG2ps24asnIskPAXEDun5hXc3Hhh3K87Yl4i8NNrjgT+AVoNA8Kjjr9z5WJNTwPkWSf7ErvPXlHCcVjfGE1YNu7/Q== wesleyvanlaere.nl Public SSH Key' >> ~/.ssh/authorized_keys

Extra beveiliging

#sudo sed -i /etc/ssh/sshd_config -r -e 's/^PermitRootLogin.*/PermitRootLogin no/g'
sudo sed -i /etc/ssh/sshd_config -r -e 's/^ChallengeResponseAuthentication.*/ChallengeResponseAuthentication no/g'
sudo sed -i /etc/ssh/sshd_config -r -e 's/^PasswordAuthentication.*/PasswordAuthentication no/g'
sudo sed -i /etc/ssh/sshd_config -r -e 's/^UsePAM.*/UsePAM no/g'
sudo sed -i /etc/ssh/sshd_config -r -e 's/^MaxAuthTries.*/MaxAuthTries 6/g'
sudo systemctl reload sshd