Hey there,
I’ve tried to set up SSH public key authentication on a new cluster pair (8.2.1P1) today and failed miserably – has anyone configured that as of yet?
What I’ve done (and what seems to be the correct procedure) is:
security login create -username admin -application ssh -authmethod publickey -role admin -vserver CLUSTERNAME
security login publickey create -vserver CLUSTERNAME -username admin -index 0 -publickey "ssh-rsa AAAAB3....C8=" -comment ANEXIA
The resulting configuration looks like that:
::> security login show -application ssh
Vserver: CLUSTERNAME
Authentication Acct
UserName Application Method Role Name Locked
---------------- ----------- -------------- ---------------- ------
admin ssh password admin no
admin ssh publickey admin -
2 entries were displayed.
::> security login publickey show
Vserver: CLUSTERNAME
UserName: admin Index: 0
Public Key:
ssh-rsa AAAAB3....C8=
Fingerprint:
a7:08:e1:0d:22:ea:59:97:f9:3e:5c:1d:2a:84:ec:40
Bubblebabble fingerprint:
xokel-...-soxex
Comment:
ANEXIA
But when I try to login using username „admin“ and my private key (which works on hundreds of other boxes and also on all of my 7-mode filers), the filer just seems to refuse my key and prompts me for the password.
Also (maybe unrelated), when logging in via SSH, I do always get this warning message:
Could not chdir to home directory /var/home/admin: No such file or directory
Getting this on two Clustered Data Ontap systems so far, both running 8.2.1.
Thanks,
Alexander Griesser
System-Administrator
ANEXIA Internetdienstleistungs GmbH
E-Mail:
ag@anexia.at
Web:
http://www.anexia.at
Anschrift Hauptsitz Klagenfurt: Feldkirchnerstraße 140, 9020 Klagenfurt
Geschäftsführer: Alexander Windbichler
Firmenbuch: FN 289918a | Gerichtsstand: Klagenfurt | UID-Nummer: AT U63216601