官术网_书友最值得收藏!

  • pfSense 2 Cookbook
  • Matt Williamson
  • 233字
  • 2021-04-09 21:16:40

Configuring SSH RSA key authentication

This recipe describes how to configure pfSense to use an RSA key rather than a password for SSH authentication.

Getting ready

Make sure that SSH is already enabled and you have generated a public key for your client.

How to do it...

  1. Browse to System | Advanced | Secure Shell.
  2. Check Disable password login for Secure Shell (RSA key only).
  3. Edit the user we will associate with the client's public key from System | User Manager | Edit admin.
  4. Select Click to paste an authorized key and paste our client's public RSA key here. When pasted, the key should appear as a single line. Be sure your text editor didn't insert any line feed characters or authentication may fail.
  5. Save the changes.

How it works...

When we connect using an SSH client, we won't be asked for a password. Instead, the SSH server will use its copy of the public RSA key to send a challenge that can only be read if you posses the matching private key.

There's more...

RSA private keys can also be stored encrypted on the client machine. The SSH client will prompt for a decryption passphrase for the private key before being able to use it for authentication with the server.

See also

  • The Enabling the Secure Shell (SSH) recipe
  • The Generating authorized RSA keys recipe
  • The Accessing the Secure Shell (SSH) recipe
主站蜘蛛池模板: 亚东县| 金门县| 长寿区| 调兵山市| 仪征市| 鹿泉市| 赤峰市| 余姚市| 蛟河市| 辉县市| 仁寿县| 永定县| 明星| 卢湾区| 齐河县| 和田县| 东辽县| 黎川县| 九寨沟县| 岫岩| 沽源县| 鄄城县| 定安县| 思南县| 哈巴河县| 滦南县| 木兰县| 新巴尔虎左旗| 筠连县| 庆阳市| 荣昌县| 铜鼓县| 安阳市| 滨州市| 出国| 峨山| 大渡口区| 蚌埠市| 枣强县| 堆龙德庆县| 昌都县|