ÎÞÂÛÊÇÔËάÈËÔ±¡¢¿ª·¢ÈËÔ±»¹ÊÇϵͳ¹ÜÀíÔ±£¬¾³£ÐèҪͨ¹ýÔ¶³Ì·ÃÎʵķ½Ê½¶ÔLinux·þÎñÆ÷½øÐйÜÀí
È»¶ø£¬´«Í³µÄÃÜÂëÈÏÖ¤·½Ê½´æÔÚÖî¶à°²È«Òþ»¼£¬ÈçÃÜÂëй¶¡¢±©Á¦ÆÆ½âµÈ
Òò´Ë£¬²ÉÓøü¼Ó°²È«¿É¿¿µÄÃÜÔ¿µÇ¼·½Ê½£¬³ÉΪÁ˱£ÕÏLinux·þÎñÆ÷°²È«µÄÖØÒª´ëÊ©
±¾ÎĽ«ÉîÈë̽ÌÖLinuxÃÜÔ¿µÇ¼µÄÔÀí¡¢ÅäÖò½Öè¼°ÆäÔÚ°²È«ÐÔºÍЧÂÊ·½ÃæµÄÓÅÊÆ
Ò»¡¢ÃÜÔ¿µÇ¼µÄÔÀí ÃÜÔ¿µÇ¼£¬ÓÖ³ÆSSHÃÜÔ¿ÈÏÖ¤£¬ÊÇÒ»ÖÖ»ùÓÚ¹«Ô¿ºÍ˽Կ¶ÔµÄÈÏÖ¤»úÖÆ
Æä»ù±¾ÔÀíÈçÏ£º 1.Éú³ÉÃÜÔ¿¶Ô£ºÊ×ÏÈ£¬Óû§ÔÚ±¾µØ¼ÆËã»úÉÏÉú³ÉÒ»¶ÔÃÜÔ¿£¬°üÀ¨Ò»¸ö¹«Ô¿£¨public key£©ºÍÒ»¸ö˽Կ£¨private key£©
¹«Ô¿¿ÉÒÔ¹«¿ª¸øÈκÎÈË£¬¶øË½Ô¿Ôò±ØÐëÑϸñ±£ÃÜ£¬½öÓÉÓû§±¾È˳ÖÓÐ
2.ÉÏ´«¹«Ô¿£ºÓû§½«Éú³ÉµÄ¹«Ô¿ÉÏ´«µ½ÐèÒª·ÃÎʵÄLinux·þÎñÆ÷ÉÏ£¬Í¨³£·ÅÖÃÔÚ·þÎñÆ÷µÄ`~/.ssh/authorized_keys`ÎļþÖÐ
Õâ¸ö¹ý³Ì¿ÉÒÔͨ¹ýSSH¿Í»§¶ËµÄ`ssh-copy-id`ÃüÁî×Ô¶¯Íê³É£¬Ò²¿ÉÒÔÊÖ¶¯¸´ÖÆÕ³Ìù
3.ÈÏÖ¤¹ý³Ì£ºµ±Óû§³¢ÊÔͨ¹ýSSHÁ¬½Óµ½·þÎñÆ÷ʱ£¬·þÎñÆ÷»áÏòÓû§·¢ËÍÒ»¸öÌôÕ½ÐÅÏ¢£¨Í¨³£ÊÇËæ»úÊý£©
Óû§ÓÃ˽Կ¶ÔÌôÕ½ÐÅÏ¢½øÐÐÇ©Ãû£¬²¢½«Ç©Ãû½á¹û·µ»Ø¸ø·þÎñÆ÷
·þÎñÆ÷ÔòʹÓô洢µÄ¹«Ô¿Ñé֤ǩÃûµÄÓÐЧÐÔ
Èç¹ûÑé֤ͨ¹ý£¬Óû§¼´¿É³É¹¦µÇ¼£¬ÎÞÐèÊäÈëÃÜÂë
¶þ¡¢ÅäÖÃÃÜÔ¿µÇ¼µÄ²½Öè ÏÂÃæ£¬ÎÒÃǽ«Ïêϸ½éÉÜÈçºÎÔÚLinux»·¾³ÏÂÅäÖÃÃÜÔ¿µÇ¼
1. Éú³ÉÃÜÔ¿¶Ô ÔÚ±¾µØ¼ÆËã»úÉÏ´ò¿ªÖÕ¶Ë£¬ÔËÐÐÒÔÏÂÃüÁîÉú³ÉÃÜÔ¿¶Ô£º ssh-keygen -t rsa -b 4096 -C your_email@example.com ÆäÖУ¬`-trsa`Ö¸¶¨Ê¹ÓÃRSAËã·¨£¬`-b 4096`Ö¸¶¨ÃÜÔ¿³¤¶ÈΪ4096룬`-C`Ñ¡ÏîÓÃÓÚÌí¼Ó×¢ÊÍ£¨Í¨³£ÊÇÓû§µÄÓÊÏ䵨ַ£©
ÃüÁîÖ´Ðкó£¬ÏµÍ³»áÌáʾÊäÈë±£´æÃÜÔ¿µÄÎļþÃûºÍÉèÖÃ˽ԿµÄÃÜÂ루¿ÉÑ¡£©
ĬÈÏÇé¿öÏ£¬Ë½Ô¿±£´æÔÚ`~/.ssh/id_rsa`ÎļþÖУ¬¹«Ô¿±£´æÔÚ`~/.ssh/id_rsa.pub`ÎļþÖÐ
2. ÉÏ´«¹«Ô¿µ½·þÎñÆ÷ ʹÓÃ`ssh-copy-id`ÃüÁ¹«Ô¿ÉÏ´«µ½·þÎñÆ÷£º ssh-copy-id user@hostname ÆäÖУ¬`user`ÊÇ·þÎñÆ÷ÉϵÄÓû§Ãû£¬`hostname`ÊÇ·þÎñÆ÷µÄµØÖ·
ÃüÁîÖ´Ðйý³ÌÖУ¬ÏµÍ³»áÌáʾÊäÈë·þÎñÆ÷µÄÃÜÂë
Ò»µ©ÃÜÂëÑé֤ͨ¹ý£¬¹«Ô¿½«±»×Ô¶¯¸´ÖƵ½·þÎñÆ÷µÄ`~/.ssh/authorized_keys`ÎļþÖÐ
3. ÑéÖ¤ÃÜÔ¿µÇ¼ ÏÖÔÚ£¬³¢ÊÔͨ¹ýSSHÁ¬½Óµ½·þÎñÆ÷£º ssh user@hostname Èç¹ûÅäÖÃÕýÈ·£¬ÏµÍ³½«²»»áÒªÇóÊäÈëÃÜÂ룬¶øÊÇÖ±½ÓµÇ¼µ½·þÎñÆ÷
Õâ±êÖ¾×ÅÃÜÔ¿µÇ¼Òѳɹ¦ÅäÖÃ
Èý¡¢ÃÜÔ¿µÇ¼µÄ°²È«ÐÔÓëЧÂÊ °²È«ÐÔ 1.·ÀÖ¹ÃÜÂëй¶£ºÃÜÔ¿µÇ¼±ÜÃâÁËʹÓÃÃ÷ÎÄÃÜÂë½øÐÐÈÏÖ¤£¬¼´Ê¹¹¥»÷Õ߽ػñÁËSSH»á»°£¬Ò²ÎÞ·¨Ö±½Ó»ñÈ¡Óû§µÄµÇ¼ÃÜÂë
2.µÖ¿¹±©Á¦ÆÆ½â£ºÓÉÓÚÃÜÔ¿µÄ³¤¶ÈºÍ¸´ÔÓÐÔÔ¶³¬´«Í³ÃÜÂ룬±©Á¦ÆÆ½âÃÜÔ¿¼¸ºõ²»¿ÉÄÜʵÏÖ
Õâ´ó´ó½µµÍÁË·þÎñÆ÷±»·Ç·¨ÈëÇֵķçÏÕ
3.¶àÒòËØÈÏÖ¤£ºËäÈ»ÃÜÔ¿µÇ¼±¾ÉíÒѾ×ã¹»°²È«£¬µ«»¹¿ÉÒÔ½áºÏÆäËû°²È«´ëÊ©£¬ÈçʹÓÃÃÜÂë±£»¤µÄ˽Կ¡¢ÅäÖÃSSHÃÜÔ¿µÄ¹ýÆÚʱ¼äµÈ£¬½øÒ»²½ÌáÉý°²È«ÐÔ
4.³·ÏúȨÏÞ£ºÈç¹û˽Կ¶ªÊ§»òй¶£¬¹ÜÀíÔ±¿ÉÒÔ¼òµ¥µØ´Ó·þÎñÆ÷µÄ`~/.ssh/authorized_keys`ÎļþÖÐɾ³ý¶ÔÓ¦µÄ¹«Ô¿£¬Á¢¼´³·Ïú¸ÃÃÜÔ¿µÄ·ÃÎÊȨÏÞ
ЧÂÊ 1.¼ò»¯²Ù×÷Á÷³Ì£ºÒ»µ©ÅäÖÃÁËÃÜÔ¿µÇ¼£¬Óû§ÎÞÐèÿ´ÎµÇ¼ʱ¶¼ÊäÈëÃÜÂ룬´ó´ó¼ò»¯Á˲Ù×÷Á÷³Ì£¬Ìá¸ßÁ˹¤×÷ЧÂÊ
2.Ö§³Ö×Ô¶¯»¯½Å±¾£ºÃÜÔ¿µÇ¼ÎÞÐèÈ˹¤ÊäÈëÃÜÂ룬·Ç³£ÊʺÏÓÃÓÚ×Ô¶¯»¯½Å±¾ºÍ³ÖÐø¼¯³É/³ÖÐø²¿Êð£¨CI/CD£©Á÷³ÌÖУ¬¼õÉÙÁËÈËΪ¸ÉÔ¤£¬Ìá¸ßÁ˲¿ÊðµÄ¿É¿¿ÐÔºÍЧÂÊ
3.¼õÉÙÃÜÂë¹ÜÀí¸ºµ££ºËæ×Å·þÎñÆ÷ÊýÁ¿µÄÔö¼Ó£¬¹ÜÀí¶à¸öÃÜÂë±äµÃ·Ç³£·±ËöÇÒÈÝÒ׳ö´í
ÃÜÔ¿µÇ¼ͨ¹ý¼¯ÖйÜÀí˽Կ£¬ÓÐЧ¼õÇáÁËÃÜÂë¹ÜÀíµÄ¸ºµ£
ËÄ¡¢×î¼Ñʵ¼ù 1.¶¨ÆÚ¸ü»»ÃÜÔ¿£ºËäÈ»ÃÜÔ¿µÄ°²È«ÐԺܸߣ¬µ«¶¨ÆÚ¸ü»»ÃÜÔ¿ÈÔÈ»ÊÇÒ»¸öºÃϰ¹ß£¬¿ÉÒÔ½µµÍ˽Կ³¤ÆÚʹÓõÄDZÔÚ·çÏÕ
2.ʹÓÃÇ¿ÃÜÂë±£»¤Ë½Ô¿£ºÈç¹û˽ԿÎļþÉèÖÃÁËÃÜÂë±£»¤£¬¼´Ê¹Ë½Ô¿Îļþ±»ÇÔÈ¡£¬¹¥»÷ÕßÒ²ÎÞ·¨Ö±½ÓʹÓÃ˽Կ½øÐÐÈÏÖ¤
3.ÏÞÖÆSSH·ÃÎÊÀ´Ô´£ºÍ¨¹ýÅäÖ÷À»ðǽ¹æÔò£¬ÏÞÖÆÖ»ÓÐÌØ¶¨µÄIPµØÖ·»òIP¶Î¿ÉÒÔ·ÃÎÊSSH·þÎñ£¬¼õÉÙDZÔڵĹ¥»÷Ãæ
4.½ûÓÃÃÜÂëÈÏÖ¤£ºÔÚ·þÎñÆ÷µÄSSHÅäÖÃÎļþÖУ¨Í¨³£ÊÇ`/etc/ssh/sshd_config`£©£¬½«`PasswordAuthentication`ÉèÖÃΪ`no`£¬Ç¿ÖÆÊ¹ÓÃÃÜÔ¿µÇ¼£¬½øÒ»²½Ìá¸ß°²È«ÐÔ
5.¼à¿ØºÍÈÕÖ¾¼Ç¼£ºÆôÓÃSSHµÇ¼µÄÈÕÖ¾¼Ç¼¹¦ÄÜ£¬¶¨ÆÚÉó²éÈÕÖ¾Îļþ£¬¼°Ê±·¢ÏÖ²¢ÏìÓ¦Òì³£µÇ¼³¢ÊÔ
Îå¡¢½áÓï LinuxÃÜÔ¿µÇ¼ÒÔÆäÇ¿´óµÄ°²È«ÐԺ͸ßЧÐÔ£¬³ÉΪÁËÔ¶³Ì·ÃÎÊLinux·þÎñÆ÷µÄÊ×Ñ¡·½Ê½
ͨ¹ýºÏÀíÅäÖÃÃÜÔ¿µÇ¼£¬²»½ö¿ÉÒÔÓÐЧ·ÀÖ¹ÃÜÂëй¶ºÍ±©Á¦ÆÆ½âµÈ°²È«·çÏÕ£¬»¹Äܼò»¯²Ù×÷Á÷³Ì£¬Ìá¸ß¹¤×÷ЧÂÊ
Ëæ×ÅÊý×Ö»¯×ªÐ͵ÄÉîÈ룬±£ÕÏ·þÎñÆ÷°²È«µÄÖØÒªÐÔÈÕÒæÍ¹ÏÔ£¬ÕÆÎÕ²¢Ó¦ÓÃÃÜÔ¿µÇ¼¼¼Êõ£¬¶ÔÓÚÿһλLinuxϵͳ¹ÜÀíÔ±ºÍÔËάÈËÔ±À´Ëµ£¬¶¼ÊÇÒ»Ïî²»¿É»òȱµÄ¼¼ÄÜ
ÈÃÎÒÃǹ²Í¬Å¬Á¦£¬Îª¹¹½¨¸ü¼Ó°²È«¡¢¸ßЧµÄLinux·þÎñÆ÷»·¾³¹±Ï×Á¦Á¿