Vyos配置SSH登录

 

SSH配置

设置监听端口

set service ssh port <port>
vyos@vyos# set service ssh port 22

设置监听地址(IPv4/IPv6)

set service ssh listen-address <address>
vyos@vyos# set service ssh listen-address 192.168.1.150
 

SSH密码登录

设置监听端口即可启用SSH

 

SSH密钥登录

禁用SSH密码登录

set service ssh disable-password-authentication

软件生成密钥对,拷贝公钥值(软件生成密钥方法,secureCRT生成的公钥值保存在openssh格式的.pub 文件)

ssh-rsa AAAAB3NzaC1yc.....91BgppdCxRpLmZ2RTw0bqJuBA75ghp3h/aDw== rsa-key-20210702
# 公钥值为ssh-rsa后的一串数值

vyos配置公钥加密

set system login user vyos authentication public-keys <identifier> key <key>
set system login user vyos authentication public-keys <identifier> type <type>
set system login user vyos authentication public-keys vyos key 'AAAAB3NzaC1yc2EAAAABJQAAAQEAgH1A7rWHL67WaYzr88UAONXrXnRfNot7WZjIrjAP1Rph+WdB2ZJEcOpw/rXg99pwWfDWRWTebJA3FtL089H/wJU/Dpr0TSNXB+0IM06G9KEiaItFv0+CyuqqY/EkLzLKcPDdnG+E8b10jdUM8gF0p9pfRs9FrYKKKgLUB9q7JMsXyMGKuInP1snKCYua/FCVCJohbFSHs0nikL2NQeF/7RplkdrxAosaufXPiUfBfSMhTuAWyg8uPELXfb8GMekX3EN+qoj6QJoVsyWDBFH1rMIGgsdPpsMnGWKf941op0+RgNs9+S91BgppdCxRpLmZ2RTw0bqJuBA75ghp3h/aDw== rsa-key-20210702'
set system login user vyos authentication public-keys vyos type 'ssh-rsa'
# <identifier>密钥登陆唯一标识符,可为同一用户配置多个标识符实现为同一用户分配多个密钥
# <key>客户端生成的公钥值
# <type>公钥类型

软件使用密钥登录 软件使用SSH密钥登录方法

 

References

posted @ 2023-09-17 11:20  xsummerx  阅读(612)  评论(0)    收藏  举报