Secure Shell (SSH) 远程登录与退出

Secure Shell [SSH] 远程登录与退出

Secure Shell (SSH) is a cryptographic network protocol for operating network services securely over an unsecured network. The best known example application is for remote login to computer systems by users.

SSH provides a secure channel over an unsecured network in a client-server architecture, connecting an SSH client application with an SSH server. Common applications include remote command-line login and remote command execution, but any network service can be secured with SSH. The protocol specification distinguishes between two major versions, referred to as SSH-1 and SSH-2.

The Secure Shell protocols are used in several file transfer mechanisms.

复制代码
cryptographic ['krɪptəʊ'græfɪk]:adj. 关于暗号的 n. 隐晶文象状
mechanism [ˈmekəˌnɪz(ə)m]:n. 机制,机械装置,方法,机件

SSH 远程登录,用户名:user_name,远程主机 IP:host_ip

复制代码
$ ssh user_name@host_ip

如果本地用户名与远程用户名一致,登录时可以省略用户名。

复制代码
$ ssh host_ip

SSH 的默认端口是 22,登录请求会送进远程主机的 22 端口。使用 -p 参数,可以修改这个端口。

复制代码
$ ssh -p 2222 user_name@host_ip

上面的命令表示,ssh 直接连接远程主机的 2222 端口。

  1. 查看 ssh 版本,ssh 登录远程主机与退出登录

    strong@foreverstrong:~$ ssh yongqiang@192.168.1.3
    yongqiang@192.168.1.3's password:
    Welcome to Ubuntu 16.04.4 LTS (GNU/Linux 4.4.0-116-generic x86_64)

    81 packages can be updated.
    35 updates are security updates.

    Last login: Fri Jun 1 22:05:34 2018 from 192.168.1.116
    yongqiang@DN-S3:~ ssh -V OpenSSH_7.2p2 Ubuntu-4ubuntu2.4, OpenSSL 1.0.2g 1 Mar 2016 yongqiang@DN-S3:~
    yongqiang@DN-S3:~ logout Connection to 192.168.1.3 closed. strong@foreverstrong:~

    strong@foreverstrong:~$ ssh yongqiang@192.168.1.3
    yongqiang@192.168.1.3's password:
    Welcome to Ubuntu 16.04.4 LTS (GNU/Linux 4.4.0-116-generic x86_64)

    81 packages can be updated.
    35 updates are security updates.

    Last login: Sat Jun 2 11:18:13 2018 from 192.168.1.116
    yongqiang@DN-S3:~ yongqiang@DN-S3:~ exit
    logout
    Connection to 192.168.1.3 closed.
    strong@foreverstrong:~$

  2. 第一次登录对方主机,系统会出现下面的提示。

无法确认 host 主机的真实性,只知道它的公钥指纹,是否继续连接?

当远程主机的公钥被接受以后,它就会被保存在文件 $HOME/.ssh/known_hosts 之中。下次再连接这台主机,系统就会认出它的公钥已经保存在本地了,从而跳过警告部分,直接提示输入密码。

每个 SSH 用户都有自己的 known_hosts 文件,此外系统也有一个这样的文件,通常是 /etc/ssh/ssh_known_hosts,保存一些对所有用户都可信赖的远程主机的公钥。

复制代码
strong@foreverstrong:~$ ssh yongqiang@192.168.1.3
The authenticity of host '192.168.1.3 (192.168.1.3)' can't be established.
ECDSA key fingerprint is SHA256:02+dO+WcPzmfu7yUlJG/6CYU5zAlw9m5swz/NSNMUbc.
Are you sure you want to continue connecting (yes/no)? yes
Warning: Permanently added '192.168.1.3' (ECDSA) to the list of known hosts.
yongqiang@192.168.1.3's password: 
Welcome to Ubuntu 16.04.4 LTS (GNU/Linux 4.4.0-116-generic x86_64)
 * Documentation:  https://help.ubuntu.com
 * Management:     https://landscape.canonical.com
 * Support:        https://ubuntu.com/advantage
79 packages can be updated.
32 updates are security updates.
The programs included with the Ubuntu system are free software;
the exact distribution terms for each program are described in the
individual files in /usr/share/doc/*/copyright.
Ubuntu comes with ABSOLUTELY NO WARRANTY, to the extent permitted by
applicable law.
yongqiang@DN-S3:~$ ls
yongqiang@DN-S3:~$ exit
logout
Connection to 192.168.1.3 closed.

References

1\] Yongqiang Cheng,

相关推荐
cnnews16 小时前
手机通过Termux安装unbuntu,开启SSH
linux·运维·ubuntu·ssh
桌面运维家18 小时前
Linux SSH安全:密钥认证与端口防护实战指南
linux·安全·ssh
迷路爸爸18019 小时前
FRP 安全内网穿透配置:TCP 与 STCP 两种安全 SSH 穿透方案
tcp/ip·安全·ssh
F1FJJ2 天前
什么是 Shield CLI?视频讲解:一条命令,可浏览器远程访问一切内部服务(RDP/VNC/SSH/数据库等)
运维·网络·数据库·网络协议·ssh
❀͜͡傀儡师3 天前
Apifox投毒事件深度分析报告:供应链攻击窃取SSH密钥与Git凭据
git·ssh·apifox
tobebetter95273 天前
如何在windows系统通过ssh远程连接部署在云服务器的openclaw
服务器·windows·ssh
RanMaxLi3 天前
【ssh】vscode使用ssh链接服务器失败
服务器·vscode·ssh
feasibility.3 天前
SSH Agent Forwarding 与 tmux 排障笔记
linux·运维·服务器·经验分享·笔记·ssh
我是谁??4 天前
在 Rocky Linux 9 无桌面环境中通过 SSH 安装 KVM 虚拟机(Rocky9含 XFCE 桌面/xubuntu20)完整指南
linux·服务器·ssh