1w6 uRPG 1w6 uRPG
  • Anmelden
  • Öffentlich

    • Öffentlich
    • Gruppen
    • Beliebt
    • Verzeichnis

Unterhaltung

Nachrichten

  1. mk mk

    #newbie question: I want to allow logging in to SSH for only two (logical) users, and only with Keys - do I need a separate key pair for each user? #security !security

    Thursday, 14-May-15 17:03:44 UTC von oracle.skilledtests.com
    • mk mk

      @mk Note: I've already disallowed logging in as root

      Thursday, 14-May-15 17:04:20 UTC
    • lnxw48 lnxw48

      @mk I think you do. The key pair identifies the user to the system.

      Thursday, 14-May-15 17:14:02 UTC
    • mk mk lnxw48

      @lnxw48 ok, thanks. Can I then 'arbitrarily' choose a name for teh generated keys so they reflect the intended user name?

      Thursday, 14-May-15 17:16:53 UTC
    • lnxw48 lnxw48

      @mk yes.

      Thursday, 14-May-15 17:41:08 UTC
    • mk mk lnxw48

      lnxw48 great, thanks

      Thursday, 14-May-15 17:43:27 UTC
    • mk mk lnxw48 , kat

      @mk @lnxw48 @kat this is interesting: I looked up the man page for ssh-copy-id, which mentions the -i parameter to specify the identity file, but it *doesn't* specify the -p parameter to specify the port; I used that anyway because I…

      Thursday, 14-May-15 18:24:03 UTC
    • mk mk lnxw48 , kat

      @mk @lnxw48 @kat oops - locked myself out anyway - getting error message 'Permission denied (publickey).' - I have no idea why!

      Thursday, 14-May-15 19:09:31 UTC
    • kat kat lnxw48

      @mk @lnxw48 look at /var/log/auth.log ? permissions on the authorized_keys files ?

      Thursday, 14-May-15 19:11:36 UTC
    • mmn mmn lnxw48 , kat

      @mk @lnxw48 @kat Bad/wrong permissions/owner on the authorized_keys file or parent folder?

      Thursday, 14-May-15 19:12:30 UTC
    • lnxw48 lnxw48 mmn , kat

      @mk @kat @mmn I know this is already solved, but putting this here for future reference: On the client side, permissions have to be correct on ~/.ssh/ ... that directory and its contents should not be acccessible for any other users. This…

      Saturday, 16-May-15 17:07:42 UTC
    • mk mk lnxw48

      @lnxw48 yes, this can be confusing, but I'd read about it so was aware; I didn't actually run into it though

      Saturday, 16-May-15 20:55:46 UTC

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Hilfe
  • Über
  • FAQ
  • AGB
  • Privatsphäre
  • Quellcode
  • Version
  • Kontakt

1w6 uRPG ist ein Mikrobloggingdienst von Arne (Drak) Babenhauserheide. Es wird mit der Mikrobloggingsoftware StatusNet (Version 1.1.1-release) betrieben, die unter der GNU Affero General Public License erhältlich ist. The running version includes the patches from draketo.de/proj/statusnet-patches.

Creative Commons Attribution 3.0 Alle Inhalte und Daten von 1w6 uRPG sind unter der Creative Commons Attribution 3.0 Lizenz verfügbar.