Dell PowerEdge R830 Integrated Remote Access Controller 8 Version 2.70.70.70 U - Page 121

Generating public keys for Linux, Uploading SSH keys, Uploading SSH keys using web interface

Page 121 highlights

6. Save the public and private key. Generating public keys for Linux To use the ssh-keygen application to create the basic key, open a terminal window and at the shell prompt, enter ssh-keygen -t rsa -b 2048 -C testing where: • -t is rsa. • -b specifies the bit encryption size between 2048 and 4096. • -C allows modifying the public key comment and is optional. NOTE: The options are case-sensitive. Follow the instructions. After the command executes, upload the public file. CAUTION: Keys generated from the Linux management station using ssh-keygen are in non-4716 format. Convert the keys into the 4716 format using ssh-keygen -e -f /root/.ssh/id_rsa.pub > std_rsa.pub. Do not change the permissions of the key file. The conversion must be done using default permissions. NOTE: iDRAC does not support ssh-agent forward of keys. Uploading SSH keys You can upload up to four public keys per user to use over an SSH interface. Before adding the public keys, make sure that you view the keys if they are set up, so that a key is not accidentally overwritten. When adding new public keys, make sure that the existing keys are not at the index where the new key is added. iDRAC does not perform checks to make sure previous key(s) are deleted before a new key(s) are added. When a new key is added, it is usable if the SSH interface is enabled. Uploading SSH keys using web interface To upload the SSH keys: 1. In the iDRAC Web interface, go to Overview > iDRAC Settings > Network > User Authentication > Local Users. The Users page is displayed. 2. In the User ID column, click a user ID number. The Users Main Menu page is displayed. 3. Under SSH Key Configurations, select Upload SSH Key(s) and click Next. The Upload SSH Key(s) page is displayed. 4. Upload the SSH keys in one of the following ways: • Upload the key file. • Copy the contents of the key file into the text box For more information, see iDRAC Online Help. 5. Click Apply. Uploading SSH keys using RACADM To upload the SSH keys, run the following command: NOTE: You cannot upload and copy a key at the same time. • For local RACADM: racadm sshpkauth -i -k -f • From remote RACADM using Telnet or SSH: racadm sshpkauth -i -k -t For example, to upload a valid key to iDRAC User ID 2 in the first key space using a file, run the following command: $ racadm sshpkauth -i 2 -k 1 -f pkkey.key NOTE: The -f option is not supported on telnet/ssh/serial RACADM. Setting up iDRAC communication 121

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298

6.
Save the public and private key.
Generating public keys for Linux
To use the
ssh-keygen
application to create the basic key, open a terminal window and at the shell prompt, enter
ssh-keygen –t rsa
–b 2048 –C testing
where:
-t
is
rsa
.
–b
specifies the bit encryption size between 2048 and 4096.
–C
allows modifying the public key comment and is optional.
NOTE:
The options are case-sensitive.
Follow the instructions. After the command executes, upload the public file.
CAUTION:
Keys generated from the Linux management station using ssh-keygen are in non-4716 format. Convert the
keys into the 4716 format using
ssh-keygen -e -f /root/.ssh/id_rsa.pub > std_rsa.pub
. Do not change the
permissions of the key file. The conversion must be done using default permissions.
NOTE:
iDRAC does not support ssh-agent forward of keys.
Uploading SSH keys
You can upload up to four public keys
per user
to use over an SSH interface. Before adding the public keys, make sure that you view the
keys if they are set up, so that a key is not accidentally overwritten.
When adding new public keys, make sure that the existing keys are not at the index where the new key is added. iDRAC does not perform
checks to make sure previous key(s) are deleted before a new key(s) are added. When a new key is added, it is usable if the SSH interface
is enabled.
Uploading SSH keys using web interface
To upload the SSH keys:
1.
In the iDRAC Web interface, go to
Overview
>
iDRAC Settings
>
Network
>
User Authentication
>
Local Users
.
The
Users
page is displayed.
2.
In the
User ID
column, click a user ID number.
The
Users Main Menu
page is displayed.
3.
Under
SSH Key Configurations
, select
Upload SSH Key(s)
and click
Next
.
The
Upload SSH Key(s)
page is displayed.
4.
Upload the SSH keys in one of the following ways:
Upload the key file.
Copy the contents of the key file into the text box
For more information, see iDRAC Online Help.
5.
Click
Apply
.
Uploading SSH keys using RACADM
To upload the SSH keys, run the following command:
NOTE:
You cannot upload and copy a key at the same time.
For local RACADM:
racadm sshpkauth -i <2 to 16> -k <1 to 4> -f <filename>
From remote RACADM using Telnet or SSH:
racadm sshpkauth -i <2 to 16> -k <1 to 4> -t <key-text>
For example, to upload a valid key to iDRAC User ID 2 in the first key space using a file, run the following command:
$ racadm sshpkauth -i 2 -k 1 -f pkkey.key
NOTE:
The
-f
option is not supported on telnet/ssh/serial RACADM.
Setting up iDRAC communication
121