Authentication with SSH using public keys

Yuri Pankov yuri.pankov at gmail.com
Tue Nov 4 12:43:41 PST 2008


On Tue, Nov 04, 2008 at 12:39:36PM -0800, af300wsm at gmail.com wrote:
>>
>>
>> > Following onto the e-mail I made before, apparently that little 
> permissions
>>
>> > difference for the directory, .ssh, was the problem. Changing it to 
>> 644 
> has,
>>
>> > apparently, fixed the problem.
>>
>>
>>
>> Cool :) . I learnt this from my first SSH public-key authentication
>>
>> configuration ;)
>>
>>
>>
>> Ashish
>>
>> --
>>
>
> Of course I meant to say that changing the perms to 755 fixed it, not 
> 644. I'm still reviewing the docs but I think that this directory could 
> be made 700, is that correct? Or, at the least, 750?

>From ssh(1):
     ~/.ssh/
             This directory is the default location for all user‐specific con‐
             figuration and authentication information.  There is no general
             requirement to keep the entire contents of this directory secret,
             but the recommended permissions are read/write/execute for the
             user, and not accessible by others.

So 700 is not only possible, but also recommended. :-)


Yuri


More information about the freebsd-questions mailing list