使用Shell脚本提供密码

时间:2008-10-22 06:58:54

标签: linux unix networking shell

我设置了我的客户&用于无密码登录的服务器。 像无密码登录一样,将服务器的RSA密钥复制到所有客户端的/root/.ssh/id-rsa.pub。但是,我已经手动完成了。我喜欢使用shell脚本自动执行此过程,并通过脚本为机器提供密码。 如果此问题得到解决,那么我还想使用rsync自动将推送项目发送到所有服务器。 在这方面,任何人都可以帮助我。

谢谢

3 个答案:

答案 0 :(得分:2)

这个脚本来自Debian(及衍生产品)机器,用于分发密钥。它叫做ssh-copy-id。你会这样使用它:

ssh-copy-id [-i identity_file] [user@]machine

然后您输入密码并完成复制。你只会这样做一次,然后可以像往常一样在ssh上使用rsync。

#!/bin/sh

# Shell script to install your identity.pub on a remote machine
# Takes the remote machine name as an argument.
# Obviously, the remote machine must accept password authentication,
# or one of the other keys in your ssh-agent, for this to work.

ID_FILE="${HOME}/.ssh/identity.pub"

if [ "-i" = "$1" ]; then
  shift
  # check if we have 2 parameters left, if so the first is the new ID file
  if [ -n "$2" ]; then
    if expr "$1" : ".*\.pub" ; then
      ID_FILE="$1"
    else
      ID_FILE="$1.pub"
    fi
    shift         # and this should leave $1 as the target name
  fi
else
  if [ x$SSH_AUTH_SOCK != x ] ; then
    GET_ID="$GET_ID ssh-add -L"
  fi
fi

if [ -z "`eval $GET_ID`" ] && [ -r "${ID_FILE}" ] ; then
  GET_ID="cat ${ID_FILE}"
fi

if [ -z "`eval $GET_ID`" ]; then
  echo "$0: ERROR: No identities found" >&2
  exit 1
fi

if [ "$#" -lt 1 ] || [ "$1" = "-h" ] || [ "$1" = "--help" ]; then
  echo "Usage: $0 [-i [identity_file]] [user@]machine" >&2
  exit 1
fi

{ eval "$GET_ID" ; } | ssh $1 "umask 077; test -d .ssh || mkdir .ssh ; cat >> .ssh/authorized_keys" || exit 1

cat <<EOF
Now try logging into the machine, with "ssh '$1'", and check in:

  .ssh/authorized_keys

to make sure we haven't added extra keys that you weren't expecting.

EOF

答案 1 :(得分:0)

如果您需要将更新/更改推送到网络中的多台计算机,那么您可能需要考虑查看在正常渠道之外工作的Puppet之类的内容。

答案 2 :(得分:0)

.ssh/authorized_keys方法不可用时,您可以使用expect登录远程计算机。例如:

#!/usr/bin/expect

spawn   ssh user@remote-host
expect  "*password: $"
send    "YOUR PASSWORD HERE\n"
send    "bash\n"
interact