Bayanan basira Sauƙaƙan umarni don aiki tare da sabis na Riba
Main Bayanan basira Yadda ake haɗawa da uwar garken Linux ta hanyar SSH

Yadda ake haɗawa da uwar garken Linux ta hanyar SSH


Babban hanyar haɗi zuwa uwar garken Linux shine ta SSH yarjejeniya. Wannan nau'in haɗin yana da tsaro, saboda duk bayanan da aka canjawa wuri ta cikin su an ɓoye su. Domin to kafa haɗin SSH ya kamata ka saita shi akan uwar garken nesa wanda kake son haɗawa da shi, da abokin ciniki a gefen mai amfani. Akwai ton na software don haɗin SSH. Dangane da Linux, kunshin OpenSSH shine mafi shahara kuma ga mutanen Windows galibi suna amfani da PuTTY.

Bari mu kalli tsarin uwar garken ta hanyar amfani da Ubuntu Server 18.04 a matsayin misali, sannan mu yi ƙoƙarin haɗi zuwa uwar garken daga Linux da Windows.

Duk abin da za mu yi zai kasance daga asusun mai amfani na yau da kullun. A wannan yanayin, mun ƙirƙiri mai amfani "Michael", Da"tushen” an kashe asusun ta tsohuwa.

Saitin gefen uwar garken

Saita kunshin yana gudanar da wannan umarni:

sudo apt install openssh-server
Shigar da yanayin SSH akan sabar Linux

Bayan an gama shigarwa, tabbatar cewa sabis ɗin yana gudana. Yi amfani da wannan umarni:

systemctl status sshd
Duba samuwan sabis na SSH

Matsayi"Aiki (gudu)” yana nufin an kunna sabis ɗin kuma yana aiki akai-akai.

Domin gujewa toshe hanyoyin shiga ta hanyar Tacewar zaɓi, tabbatar da cewa kun kashe shi, saboda ba za mu saita Firewall na cibiyar sadarwa a cikin wannan labarin ba.

Yi amfani da wannan umarni:

sudo ufw disable
Kashe toshe haɗin mai shigowa a cikin Firewall Windows

A wannan mataki kuna iya riga haɗi zuwa uwar garken. Tare da saitunan saitunan tsoho yana ba da damar haɗi zuwa daidaitaccen tashar tashar jiragen ruwa 22 tare da ingantaccen tushen kalmar sirri.

Haɗin SSH daga Linux

A matsayinka na mai mulki, an shigar da abokin ciniki na OpenSSH akan Linux ta tsohuwa kuma baya buƙatar ƙarin saitin jagora. Ana iya kafa haɗin kai daga tasha tare da taimakon umarnin ssh. Ma'auni a wannan yanayin zai zama sunan mai amfani da adireshin IP na uwar garken nesa. A kan uwar garken gwajin mu da muke amfani da shi a matsayin misali akwai asusu guda ɗaya “mihail”, don haka za mu yi amfani da wannan.

ssh [email protected]

A haɗin farko dole ne ka tabbatar da ƙarin maɓallin jama'a na uwar garken zuwa ma'ajin bayanai, don haka amsa “aBayan haka za ku iya shigar da kalmar sirri, idan haɗin haɗin ya yi nasara, za ku ga sakon maraba na layin umarni na uwar garken. Yanzu duk umarnin za a aiwatar da su a kan nesa.

Haɗin SSH daga Linux

SSH daga Windows

Bude Putty kuma saita sigogin haɗi. Tabbatar cewa an canza"Nau'in haɗin” an juya zuwa SSH. Shigar da adireshin IP a cikin "Sunan Mai watsa shiri” filin, ƙimar tsoho 22 cikin "Port"Kuma danna"Bude".

Haɗin SSH daga Windows

A farkon haɗin gwiwa Putty zai tambaye ku don tabbatar da cewa kun amince da wannan uwar garken, don haka danna "A"

Haɗin farko SSH daga Windows

Bayan ka shigar da login da kalmar sirri, za ka ga layin umarni na sabar nesa.

Haɗin SSH yayi nasara

Tabbatarwa ta maɓalli. Ƙara matakin tsaro

Lokacin da abokin ciniki ke ƙoƙarin kafa amintaccen haɗi zuwa uwar garken ta hanyar SSH, kafin barin haɗin uwar garken yana buƙatar tantance (tabbatar) abokin ciniki. Kamar yadda aka ambata a baya, ana amfani da ingantaccen tushen kalmar sirri ta tsohuwa. Ba ya samar da ingantaccen tsaro, domin koyaushe akwai hanyar da za a murkushe shi. Bayan haka, tabbatar da kalmar wucewa baya amfani da haɗin SSH tare da amfani da rubutun.

Don irin wannan nau'in ayyuka akwai hanyar tantancewa ta musamman ta maɓalli. Ma'anar ita ce abokin ciniki yana samar da maɓallan sirri da na jama'a sannan a aika da maɓallin jama'a zuwa uwar garken. Bayan haka ba kwa buƙatar kalmar sirri don haɗawa da uwar garken, saboda ana gudanar da tantancewa ta hanyar maɓallan jama'a da na sirri. Don samar da kyakkyawan matakin tsaro, damar shiga maɓalli na sirri yakamata a iyakance. Saboda gaskiyar cewa an adana maɓallin keɓaɓɓen a gefen abokin ciniki kuma ba a canza shi ta hanyar hanyar sadarwa ba, an yi imanin wannan hanyar ta fi tsaro.

Tabbatarwa ta maɓalli akan Linux

Bari mu samar da maɓallan jama'a da na sirri akan abokin ciniki tare da taimakon ssh-keygen software mai amfani. Kayan aikin zai ba da shawarar canza hanya zuwa maɓalli na sirri kuma shigar da kalmar wucewa don ƙarin tsaro. Bar duk sigogi ta tsohuwa ta latsa Shigar a duk buƙatun.

Tabbatarwa ta maɓalli akan Linux don amintaccen haɗi

A sakamakon haka, a cikin kundin gida a cikin babban fayil na .ssh za ku sami fayiloli guda biyu da aka samar: id_rsa da kuma id_rsa.pub wanda ya ƙunshi maɓallan sirri da na jama'a daidai da haka.

Bayan haka, kuna buƙatar aika maɓallin jama'a zuwa uwar garken. Don yin haka, kwafi abubuwan da ke cikin “id_rsa.pub"fayiloli zuwa"~/.ssh/maɓallai masu izini"fayil a kan uwar garken. Bari mu tafi hanya mafi sauƙi tare da taimakon "ssh-kwafin-idShigar da login da adireshin IP na uwar garken, kamar dai idan akwai haɗin kai na yau da kullun. Bayan shigar da kalmar wucewa, maɓallin jama'a na abokin ciniki za a kwafi ta atomatik zuwa uwar garken.

ssh-copy-id [email protected]
Izinin SSH tare da maɓallan sirri

Bayan kun yi duk wannan, uwar garken ba zai buƙaci shigar da kalmar wucewa ba kuma.

Tabbatarwa ta maɓalli akan Windows

Bude PUTTYGEN kuma danna "Generate" Domin samar da makullin, kawai kuna buƙatar matsar da linzamin kwamfuta akan allon kuma kayan aikin zai haifar da makullin ba da gangan ba.

Bayan an samar da makullin, danna "Ajiye maɓalli na sirri” sannan ka ajiye shi a cikin fayil din tare da maɓalli na sirri a diski ɗinka, zaku iya saita duk hanyar da kuke so, amma kaɗan daga baya za ku buƙaci saka shi a cikin Putty, sannan ku kwafi maɓallin jama'a daga saman taga.

Samar da maɓalli na sirri don haɗin SSH don Windows

Bari mu aika da maɓalli na jama'a ta hanyar yin kwafi kawai zuwa tashar. Bude Putty kuma haɗa zuwa uwar garken kamar yadda aka saba. Yanzu bari mu ƙirƙira”.ssh/maɓallai masu izini” da kuma hana sauran masu amfani damar shiga fayil ɗin, don haka yana samuwa ga mahalicci kawai.

mkdir .ssh
touch .ssh/authorized_keys
chmod 700 .ssh
chmod 600 .ssh/authorized_keys

Bayan ƙirƙirar fayil ɗin, sanya maɓallin jama'a na abokin ciniki a ciki. A matakin baya mun kwafi maɓalli na jama'a zuwa allo. Don yin rikodin abin da ke cikin allo zuwa fayil ɗin yi amfani da umarnin cat da jujjuyawar fitarwa.

cat > .ssh/authorized_keys

Bayan kun shigar da umarni, danna maɓallin linzamin kwamfuta na dama a cikin taga mai buɗewa kuma liƙa abin da ke cikin allo. Don tabbatar da shigarwar, danna "Ctrl + D” gajeriyar hanya kuma cire haɗin daga uwar garken.

Maɓallin lodawa zuwa uwar garken

Yanzu bari mu saka hanyar zuwa maɓalli na sirri a Putty kuma mu sake haɗawa da uwar garken.

Haɗin SSH na farko tare da maɓalli na sirri

Daga yanzu, don haɗi zuwa uwar garken kuna buƙatar shigar da sunan mai amfani kawai. Idan kuna ƙoƙarin haɗawa da uwar garken daga wata na'urar da ba ta da maɓalli na sirri daidai, uwar garken zai buƙaci kalmar sirri. Bayan an saita ingantaccen tushen maɓalli, zaku iya hana shiga ta kalmar sirri.

An gama haɗi tare da maɓallin keɓaɓɓen
Labari na gaba ❯ Yadda ake kashe ingantaccen tsarin tsaro a cikin IE

Tambaye mu game da VPS

A ko da yaushe a shirye muke mu amsa tambayoyinku a kowane lokaci dare ko rana.