如何通过Master登录DC-OS slave

时间:2017-04-26 15:40:35

标签: azure azure-virtual-machine master-slave dcos azure-container-service

我在azure上创建了DC-OS集群,在使用ssh公钥创建后,我可以使用以下命令访问master, sudo ssh -v -A -p 2200 user @ master-ip -i /root/.ssh/id_rsa

进入Master之后我想访问代理,所以我将id_rsa和id_rsa.pub密钥从主机复制到主节点。 并运行以下命令。

ssh -p 22 10.32.0.4 debug1:没有更多的身份验证方法可以尝试。 权限被拒绝(公钥)

但遗憾的是它会出现以下错误,我已经尝试了很多方法,但没有进入药膏。

1 个答案:

答案 0 :(得分:2)

我们可以按照SSH代理的步骤进行操作:
1. 上传私钥到master,我将私钥(222222)上传到此目录:

root@dcos-master-B9E522B-0:/home/jason/.ssh# pwd
/home/jason/.ssh
root@dcos-master-B9E522B-0:/home/jason/.ssh# ls
222222  authorized_keys  known_hosts
root@dcos-master-B9E522B-0:/home/jason/.ssh# 

2. 更改此私钥的权限,更改为 600

jason@dcos-master-B9E522B-0:~/.ssh$ ll -a
total 20
drwx------ 2 jason jason 4096 Apr 27 02:39 ./
drwxr-xr-x 4 jason jason 4096 Apr 27 02:39 ../
-rw-rw-r-- 1 jason jason 1675 Apr 27 02:38 222222
-rw------- 1 jason jason  381 Apr 27 02:17 authorized_keys
-rw-r--r-- 1 jason jason  222 Apr 27 02:35 known_hosts
jason@dcos-master-B9E522B-0:~/.ssh$ chmod 600 222222 

3.将此密钥用于SSH代理:

jason@dcos-master-B9E522B-0:~/.ssh$ ssh jason@10.32.0.4 -i /home/jason/.ssh/222222 
ssh: /opt/mesosphere/lib/libcrypto.so.1.0.0: no version information available (required by ssh)
ssh: /opt/mesosphere/lib/libcrypto.so.1.0.0: no version information available (required by ssh)
Welcome to Ubuntu 16.04 LTS (GNU/Linux 4.4.0-28-generic x86_64)

 * Documentation:  https://help.ubuntu.com/

  Get cloud support with Ubuntu Advantage Cloud Guest:
    http://www.ubuntu.com/business/services/cloud

0 packages can be updated.
0 updates are security updates.



The programs included with the Ubuntu system are free software;
the exact distribution terms for each program are described in the
individual files in /usr/share/doc/*/copyright.

Ubuntu comes with ABSOLUTELY NO WARRANTY, to the extent permitted by
applicable law.

To run a command as administrator (user "root"), use "sudo <command>".
See "man sudo_root" for details.

jason@dcos-agent-private-B9E522B000000:~$ 

注意
1.我们可以使用CLI 2.0来查找VMSS&#39;实例管理员用户名,与主管理员用户相同的名称

C:\Users>az vmss list-instances -n "dcos-agent-private-B9E522B-vmss0" -g dcos
"osProfile": {
      "adminPassword": null,
      "adminUsername": "jason",
      "computerName": "dcos-agent-private-B9E522B000000",

2.我们也应该检查私钥权限,我们应该将其设置为 600 3.确保.ssh目录权限 700 755

drwx------ 2 jason jason 4096 Apr 27 02:39 .ssh/