Created
March 10, 2014 07:13
-
-
Save marcy-terui/9460706 to your computer and use it in GitHub Desktop.
Disable PasswordAuthentication and Enable PubkeyAuthentication on Sakura VPS.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
USER_NAME=marcy | |
sed -i "s/.*RSAAuthentication.*/RSAAuthentication yes/g" /etc/ssh/sshd_config | |
sed -i "s/.*PubkeyAuthentication.*/PubkeyAuthentication yes/g" /etc/ssh/sshd_config | |
sed -i "s/.*PasswordAuthentication.*/PasswordAuthentication no/g" /etc/ssh/sshd_config | |
sed -i "s/.*AuthorizedKeysFile.*/AuthorizedKeysFile\t\.ssh\/authorized_keys/g" /etc/ssh/sshd_config | |
sed -i "s/.*PermitRootLogin.*/PermitRootLogin no/g" /etc/ssh/sshd_config | |
echo "${USER_NAME} ALL=(ALL) NOPASSWD: ALL" >> /etc/sudoers | |
service sshd restart | |
useradd -p "" $USER_NAME | |
passwd -fu $USER_NAME | |
sudo -u $USER_NAME mkdir /home/$USER_NAME/.ssh | |
sudo -u $USER_NAME chmod 700 /home/$USER_NAME/.ssh | |
sudo -u $USER_NAME ssh-keygen -t rsa -b 2048 -N "" -f /home/$USER_NAME/.ssh/id_rsa | |
cat /home/$USER_NAME/.ssh/id_rsa.pub > /home/$USER_NAME/.ssh/authorized_keys | |
chmod 600 /home/$USER_NAME/.ssh/authorized_keys | |
chown $USER_NAME:$USER_NAME /home/$USER_NAME/.ssh/authorized_keys |
I use this now:
sed -ri "s/^#? *PasswordAuthentication *yes.*/PasswordAuthentication no/" /etc/ssh/sshd_config
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
After executing this line,
the sshd_config looks like this: