ICode9

精准搜索请尝试: 精确搜索
首页 > 系统相关> 文章详细

Linux-免密ssh登陆

2019-03-28 21:53:37  阅读:329  来源: 互联网

标签:免密 slave2 Mar master ssh Linux login root


IP要能ping通

关闭防火墙

[root@localhost tdd]# systemctl stop firewalld
[root@localhost tdd]# systemctl disable firewalld
[root@localhost tdd]# vim /etc/selinux/config

修改SELINUX=disabled

[root@localhost tdd]# reboot

修改hostname

[root@localhost tdd]# uname -n
localhost.localdomain

修改配置文件 /etc/hostname 保存退出

[root@localhost tdd]# vim /etc/hostname
master

在每台机器的/etc/hosts文件中添加如下内容:

[root@slave2 tdd]# vim /etc/hosts
192.168.44.10 master
192.168.44.11 slave1
192.168.44.12 slave2

同步系统时间

[root@master tdd]# date
Fri Mar 29 04:50:21 CST 2019
[root@master tdd]# hwclock
Fri 29 Mar 2019 04:50:27 AM CST -0.666422 seconds
[root@master tdd]# hwclock -w
[root@master tdd]# ntpdate time.nist.gov
28 Mar 20:50:47 ntpdate[2847]: step time server 132.163.96.2 offset -28799.219966 sec
[root@master tdd]# hwclock -w
[root@master tdd]# date
Thu Mar 28 20:51:23 CST 2019

如果上面time.nist.gov服务器同步不了,可以换下面几个时间服务器试试:

time.nist.gov
time.nuri.net
0.asia.pool.ntp.org
1.asia.pool.ntp.org
2.asia.pool.ntp.org
3.asia.pool.ntp.org

ssh互信

在master上操作:

首先生成密钥对

[root@master ~]# ssh-keygen -t rsa (提示时,直接回车即可)

导入本机

[root@master .ssh]# cat ~/.ssh/id_rsa.pub >> ~/.ssh/authorized_keys

再将master自己的公钥拷贝并追加到slave1、slave2的授权列表文件authorized_keys中

[root@master ~]# ssh-copy-id -i id_rsa root@slave1
[root@master ~]# ssh-copy-id -i id_rsa root@slave2

在slave*上操作:

同master只是@后是其他的机器的hostname

  • 这里用hostname是因为在hosts文件中配置了映射

测试

master:

[root@master .ssh]# ssh slave2
Last failed login: Fri Mar 29 05:08:05 CST 2019 on pts/0
There were 2 failed login attempts since the last successful login.
Last login: Thu Mar 28 21:18:56 2019
[root@slave2 ~]# ssh slave1
Last failed login: Thu Mar 28 21:24:44 CST 2019 from slave2 on ssh:notty
There was 1 failed login attempt since the last successful login.
Last login: Thu Mar 28 21:21:04 2019 from master
[root@slave1 ~]# ssh master
Last login: Thu Mar 28 21:12:29 2019
[root@master ~]#

slave1:

[root@slave1 .ssh]# ssh slave2
Last failed login: Fri Mar 29 05:08:05 CST 2019 on pts/0
There were 2 failed login attempts since the last successful login.
Last login: Thu Mar 28 21:30:35 2019 from master
[root@slave2 ~]# ssh master
Last login: Thu Mar 28 21:27:28 2019 from slave1
[root@master ~]# ssh slave1
Last login: Thu Mar 28 21:27:23 2019 from slave2
[root@slave1 ~]#

slave2:

[root@slave2 .ssh]# ssh slave1
Last login: Thu Mar 28 21:28:15 2019 from master
[root@slave1 ~]# ssh master
Last login: Thu Mar 28 21:28:08 2019 from slave2
[root@master ~]# ssh slave2
Last failed login: Fri Mar 29 05:08:05 CST 2019 on pts/0
There were 2 failed login attempts since the last successful login.
Last login: Thu Mar 28 21:31:21 2019 from slave1
[root@slave2 ~]#
[root@slave2 ~]# exit
logout
Connection to slave2 closed.
[root@master ~]# exit
logout
Connection to master closed.
[root@slave1 ~]# exit
logout
Connection to slave1 closed.
[root@slave2 .ssh]#

标签:免密,slave2,Mar,master,ssh,Linux,login,root
来源: https://www.cnblogs.com/xjshao/p/10617870.html

本站声明: 1. iCode9 技术分享网(下文简称本站)提供的所有内容,仅供技术学习、探讨和分享;
2. 关于本站的所有留言、评论、转载及引用,纯属内容发起人的个人观点,与本站观点和立场无关;
3. 关于本站的所有言论和文字,纯属内容发起人的个人观点,与本站观点和立场无关;
4. 本站文章均是网友提供,不完全保证技术分享内容的完整性、准确性、时效性、风险性和版权归属;如您发现该文章侵犯了您的权益,可联系我们第一时间进行删除;
5. 本站为非盈利性的个人网站,所有内容不会用来进行牟利,也不会利用任何形式的广告来间接获益,纯粹是为了广大技术爱好者提供技术内容和技术思想的分享性交流网站。

专注分享技术,共同学习,共同进步。侵权联系[81616952@qq.com]

Copyright (C)ICode9.com, All Rights Reserved.

ICode9版权所有