F5 client login based on certificate authentication
1. Generate key RSA type, password: 123456
Save to Openssl format
two。 Upload the public key Identity.pub generated by the client SecureCRT to the .ssh folder under the user home directory
Cd .ssh
Mv Identity.pub authorized_keys
# # cat .ssh / id_rsa.pub' > > ~ / .ssh/authorized_keys
3. Change F5 ssh profile
Tmsh
Edit sys sshd
Modify sshd {
Include "AuthorizedKeysFile h/.ssh/authorized_keys"
}
4. Save configuration
Save sys config
5. Restart the sshd service
Bigstart restart sshd
6. Select certificate authentication for client login, enter the certificate path, and verify the certificate password 123456 for the first login.
# .ssh directory is a shadow file in F5
# winscp shows hidden files