Difference between revisions of "Passwordless SSH"
Jump to navigation
Jump to search
(→ESXi1) |
|||
| Line 30: | Line 30: | ||
*vi /etc/ssh/sshd_config | *vi /etc/ssh/sshd_config | ||
| − | PermitRootLogin yes | + | PermitRootLogin yes |
| − | + | UsePAM yes | |
| − | UsePAM yes | + | # only use PAM challenge-response (keyboard-interactive) |
| − | + | PasswordAuthentication no | |
| − | + | # ?????? # | |
| − | + | ChallengeResponseAuthentication no | |
| − | PasswordAuthentication no | ||
| − | |||
| − | |||
| − | |||
| − | ChallengeResponseAuthentication no | ||
Revision as of 23:21, 6 July 2020
ESXi0
mkdir /vmfs/volumes/Admin/Utilities/sslmkdir /vmfs/volumes/Admin/Utilities/ssl/ESXi1mkdir /vmfs/volumes/Admin/Utilities/ssl/ESXi1/keysmkdir /.sshcd /.ssh/usr/lib/vmware/openssh/bin/ssh-keygen -t rsa -b 4096lscat id_rsa.pub | ssh root@ESXi1 'cat >> /etc/ssh/keys-root/authorized_keys'cd /etc/ssh/keys-root/ls -lcp /.ssh/* /vmfs/volumes/Admin/Utilities/ssl/ESXi1/keys
ESXi1
mkdir /vmfs/volumes/Admin/Utilities/sslmkdir /vmfs/volumes/Admin/Utilities/ssl/ESXi0mkdir /vmfs/volumes/Admin/Utilities/ssl/ESXi0/keysmkdir /.sshcd /.ssh/usr/lib/vmware/openssh/bin/ssh-keygen -t rsa -b 4096lscat id_rsa.pub | ssh root@ESXi0 'cat >> /etc/ssh/keys-root/authorized_keys'cd /etc/ssh/keys-root/ls -lcp /.ssh/* /vmfs/volumes/Admin/Utilities/ssl/ESXi0/keys- vi /etc/ssh/sshd_config
PermitRootLogin yes UsePAM yes # only use PAM challenge-response (keyboard-interactive) PasswordAuthentication no # ?????? # ChallengeResponseAuthentication no