From owner-freebsd-questions@FreeBSD.ORG Thu Dec 7 20:53:12 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 3787F16A417 for ; Thu, 7 Dec 2006 20:53:12 +0000 (UTC) (envelope-from cswiger@mac.com) Received: from smtpout.mac.com (smtpout.mac.com [17.250.248.177]) by mx1.FreeBSD.org (Postfix) with ESMTP id B56FE43CB2 for ; Thu, 7 Dec 2006 20:52:12 +0000 (GMT) (envelope-from cswiger@mac.com) Received: from mac.com (smtpin05-en2 [10.13.10.150]) by smtpout.mac.com (Xserve/8.12.11/smtpout07/MantshX 4.0) with ESMTP id kB7Kr53v014488; Thu, 7 Dec 2006 12:53:06 -0800 (PST) Received: from [17.214.13.96] (a17-214-13-96.apple.com [17.214.13.96]) (authenticated bits=0) by mac.com (Xserve/smtpin05/MantshX 4.0) with ESMTP id kB7Kr3K5000474; Thu, 7 Dec 2006 12:53:04 -0800 (PST) In-Reply-To: <2150E71679C07E419BDA4250480BCF2202508A58@adonis.magnetsusa.com> References: <2150E71679C07E419BDA4250480BCF2202508A58@adonis.magnetsusa.com> Mime-Version: 1.0 (Apple Message framework v752.2) Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed Message-Id: Content-Transfer-Encoding: 7bit From: Chuck Swiger Date: Thu, 7 Dec 2006 12:53:03 -0800 To: Erik Richards X-Mailer: Apple Mail (2.752.2) X-Brightmail-Tracker: AAAAAA== X-Brightmail-scanned: yes Cc: freebsd-questions@freebsd.org Subject: Re: RSA/DSA authentication X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 Dec 2006 20:53:12 -0000 On Dec 7, 2006, at 9:44 AM, Erik Richards wrote: > Now I'm editing some of my /etc/ssh/sshd_config file like > uncommenting: > (correct? I shouldn't be editing /etc/ssh/ssh_config?) > > RSAAuthentication yes > PubkeyAuthentication yes > AuthorizedKeysFile /root/.ssh/authorized_keys > (I did rename the key I was using this and made sure it was all on > one line) Once you've used ssh-keygen to make a keypair, you should copy id_dsa.pub (or id_rsa.pub) to authorized_keys, not move it. And you need to push the new version of authorized keys to the machine you are SSH'ing into, as well as having the id_whatever private key available on the machine you are SSH'ing from.... -- -Chuck