linux-admin.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* SSH Athentification with public key
@ 2003-05-27  7:30 Gerd Müller
  2003-05-27 14:57 ` Matt Hemingway
                   ` (3 more replies)
  0 siblings, 4 replies; 11+ messages in thread
From: Gerd Müller @ 2003-05-27  7:30 UTC (permalink / raw)
  To: linux-admin

Hello,

i want to update hourly a remote mirror-server with rsync via ssh. In order 
to enable the file-server to establish a ssh-session without password 
prompt, i created on file-server a keypair with ssh-keygen -t rsa (empty 
passphrase) and copied the public key (id_rsa.pub) to the 
/root/.ssh/authorized_keys File (on mirror-server). This file didn't exist 
before.
When establishing a ssh-sesssion with root@servername, the password request 
occurs nontheless!
(with root's password i am able to establish the connection).
Can anybody tell me what i did wrong? I am running RedHat 7.3 on both 
machines.

Gerd




^ permalink raw reply	[flat|nested] 11+ messages in thread
* Re: SSH Athentification with public key
@ 2003-05-27 18:08 gerardo juarez-mondragon
  0 siblings, 0 replies; 11+ messages in thread
From: gerardo juarez-mondragon @ 2003-05-27 18:08 UTC (permalink / raw)
  To: linux-admin

Gerd,

Check:

- permissions. For security reasons, SSH is quite picky about this.
Furthermore, diagnostics are very terse, for the same reasons I 
assume. If any related file, authorized_keys, the public or private 
portions of the keys, etc. has the  wrong permissions, key 
authentication will fail. What you'll see is that it falls back to 
password authentication -if it's configured that way.

- key format. RSA and DSA keys are different and are stored in 
different files. 

- configuration: there is an order in which authentications are 
tried  and other options that are controlled in the config files: 
/etc/ssh/ssh_config  and /etc/ssh/sshd_config. I'm afraid this 
location may   have changed with ssh2 to something  related. In old 
servers, this location was directly  /etc/ssh_config. Notice that 
ssh_config refers to clients. A user could have its own cient 
configuration and I don't know to what extent it overrides the system-
wide client config. The sshd_config is the server config file,  which 
is only modifiable by root however.

Gerardo


Searching for the best free email?  Try MetaCrawler Mail, from the #1 metasearch service on the Web, http://www.metacrawler.com

^ permalink raw reply	[flat|nested] 11+ messages in thread

end of thread, other threads:[~2003-06-02 16:48 UTC | newest]

Thread overview: 11+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-05-27  7:30 SSH Athentification with public key Gerd Müller
2003-05-27 14:57 ` Matt Hemingway
2003-05-27 22:40   ` Keith Morse
2003-05-28 23:06     ` Stephen Samuel
2003-06-02 16:48       ` Keith Morse
2003-05-27 17:22 ` Stephen Samuel
2003-05-27 17:55   ` Mikel Bauer
2003-05-27 18:12     ` Jean M. Bouchara
2003-05-27 21:15 ` pacho baratta
2003-05-28  6:31 ` Solved: " Gerd Müller
  -- strict thread matches above, loose matches on Subject: below --
2003-05-27 18:08 gerardo juarez-mondragon

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).