Ssh is used to remotely log in to the Linux server to manage and maintain the system. SSH is a protocol designed to provide security for remote login sessions and other network services; using the ssh service (referring to software that implements the SSH protocol), you can remotely log in to the server to manage and maintain the system, preventing information leakage during remote management.
#The operating environment of this tutorial: linux5.9.8 system, Dell G3 computer.
1 What is ssh in linux? What is the use?
(1) ssh is a protocol
SSH (Secure Shell) is more reliable and designed for remote login sessions and Other network services provide security protocols, and the use of the SSH protocol can effectively prevent information leakage during remote management.
(2) ssh service
Linux is generally used as a server. We usually use the ssh service (referring to the software that implements the SSH protocol) to log in remotely. Go to the Linux server to manage and maintain the system.
- OpenSSH is a free and open source implementation of the SSH (Secure SHell) protocol.
- OpenSSH server: sshd (Linux server starts the service)
- OpenSSH client: ssh (client starts, access the server through it)
2 What is the key-based security verification process of ssh?
You need to create a pair of keys and put the public key on the server. When connecting to the SSH server, the client sends a request to the server and uses your public key for security verification. After the server receives the request, it first searches for your public key in your home directory on the server, and then compares it with yours. The public key sent is compared. If the two keys match, the server encrypts the "challenge" with the public key and sends it to the client software. After the client software receives the "challenge", it can decrypt it with your private key.
3 What is the difference between symmetric encryption and asymmetric encryption?
(1) Symmetric encryption
The same key (secret) is used for encryption and decryption key). Highly efficient, a major drawback of symmetric encryption is the management and distribution of keys. During the process of sending keys, there is a great risk that the keys will be intercepted by hackers. The common practice in reality is to asymmetrically encrypt the symmetric encryption key and then transmit it to the person who needs it.
(2) Asymmetric encryption
Asymmetric encryption provides a very secure method for data encryption and decryption. It uses A pair of keys, public key and private key. The private key can only be kept securely by one party and cannot be leaked, while the public key can be sent to anyone who requests it. Asymmetric encryption uses one of the keys in the pair for encryption, while decryption requires the other key. Currently the most commonly used asymmetric encryption algorithm is the RSA algorithm. Although asymmetric encryption is very secure, it is very slow compared to symmetric encryption, so we still have to use symmetric encryption to transmit messages, but the key used in symmetric encryption can be sent out through asymmetric encryption.
4 The role of asymmetric encryption RSA algorithm
(1) Encryption: public key encryption private key decryption
Mainly used to encrypt data to prevent it from being illegally obtained by others to ensure data security. The data is encrypted using the public key, and only the private key can decrypt it. Even if the ciphertext is obtained by a third party on the Internet, it cannot be decrypted without the private key, thus ensuring data security.
- A generates an RSA key file on his computer, a private key file and a public key file, and sends his public key to B.
- At this time, B wants to send information to A, so B uses A's public key to encrypt his message and then sends it to A. (The ciphertext transmitted on the network cannot be decrypted without A's private key, and it will be useless after others obtain it)
- A uses his private key to decrypt B's message.
(2) Authentication: Private key encryption and public key decryption
is mainly used for identity verification to determine the authenticity of a certain identity sex. After encrypting with the private key, decrypt it with the corresponding public key to verify the authenticity of the identity.
SSH public key login uses the second function.
5 How to generate ssh key pair?
- After running the above command, a pair of public and private keys will be generated, which will be saved in id_rsa, id_rsa.pub under ~/.ssh/ by default.
- id_rsa is the private key and id_rsa.pub is the public key. The private key must be kept properly.
- The permissions of id_rsa must be 600, chmod 600 ~/.ssh/id_rsa. 600 means (-rw------) only the owner has read and write permissions.
6 ssh configuration config file and quick login
(1) Quick login configuration
You can define some shortcut key login configurations under ~/.ssh/. The configuration is in ~/.ssh/config
config structure is as follows:
Host kafka_broker_01 #定义主机别名 ServerAliveInterval 30 HostName 122.22.222.102 #主机ip Port 33033 #ssh 端口 User bila #用户名 IdentityFile /Users/bila/.ssh/id_rsa #私钥 ProxyCommand ssh w_x_bastion -C -W %h:%p #设置跳板机
(2) Login
Specify user login
ssh bila@192.168.0.103
Specify port number login
ssh ssh 192.168.0.103 -p 2022
Related recommendations: "Linux Video Tutorial"
The above is the detailed content of What is the use of linux ssh?. For more information, please follow other related articles on the PHP Chinese website!

linux设备节点是应用程序和设备驱动程序沟通的一个桥梁;设备节点被创建在“/dev”,是连接内核与用户层的枢纽,相当于硬盘的inode一样的东西,记录了硬件设备的位置和信息。设备节点使用户可以与内核进行硬件的沟通,读写设备以及其他的操作。

区别:1、open是UNIX系统调用函数,而fopen是ANSIC标准中的C语言库函数;2、open的移植性没fopen好;3、fopen只能操纵普通正规文件,而open可以操作普通文件、网络套接字等;4、open无缓冲,fopen有缓冲。

端口映射又称端口转发,是指将外部主机的IP地址的端口映射到Intranet中的一台计算机,当用户访问外网IP的这个端口时,服务器自动将请求映射到对应局域网内部的机器上;可以通过使用动态或固定的公共网络IP路由ADSL宽带路由器来实现。

在linux中,eof是自定义终止符,是“END Of File”的缩写;因为是自定义的终止符,所以eof就不是固定的,可以随意的设置别名,linux中按“ctrl+d”就代表eof,eof一般会配合cat命令用于多行文本输出,指文件末尾。

在linux中,可以利用“rpm -qa pcre”命令判断pcre是否安装;rpm命令专门用于管理各项套件,使用该命令后,若结果中出现pcre的版本信息,则表示pcre已经安装,若没有出现版本信息,则表示没有安装pcre。

linux查询mac地址的方法:1、打开系统,在桌面中点击鼠标右键,选择“打开终端”;2、在终端中,执行“ifconfig”命令,查看输出结果,在输出信息第四行中紧跟“ether”单词后的字符串就是mac地址。

在linux中,rpc是远程过程调用的意思,是Reomote Procedure Call的缩写,特指一种隐藏了过程调用时实际通信细节的IPC方法;linux中通过RPC可以充分利用非共享内存的多处理器环境,提高系统资源的利用率。

手机远程linux工具有:1、JuiceSSH,是一款功能强大的安卓SSH客户端应用,可直接对linux服务进行管理;2、Termius,可以利用手机来连接Linux服务器;3、Termux,一个强大的远程终端工具;4、向日葵远程控制等等。


Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

AI Hentai Generator
Generate AI Hentai for free.

Hot Article

Hot Tools

SAP NetWeaver Server Adapter for Eclipse
Integrate Eclipse with SAP NetWeaver application server.

EditPlus Chinese cracked version
Small size, syntax highlighting, does not support code prompt function

MantisBT
Mantis is an easy-to-deploy web-based defect tracking tool designed to aid in product defect tracking. It requires PHP, MySQL and a web server. Check out our demo and hosting services.

SublimeText3 Linux new version
SublimeText3 Linux latest version

PhpStorm Mac version
The latest (2018.2.1) professional PHP integrated development tool