SSH错误:权限被拒绝(公钥,GSSAPI-与-MIC)
问题描述:
当试图通过SSH连接EC2我得到以下错误:SSH错误:权限被拒绝(公钥,GSSAPI-与-MIC)
joshua-scotts-macbook-pro:.ec2 joshuascott$ ssh -v -i OFMoodle [email protected]
OpenSSH_5.2p1, OpenSSL 0.9.8l 5 Nov 2009
debug1: Reading configuration data /etc/ssh_config
debug1: Connecting to ec2-xxx-xxx-xxx-xx.compute-1.amazonaws.com [xxx.xxx.xxx.xxx] port 22.
debug1: Connection established.
debug1: identity file OFMoodle type -1
debug1: Remote protocol version 2.0, remote software version OpenSSH_4.7
debug1: match: OpenSSH_4.7 pat OpenSSH_4*
debug1: Enabling compatibility mode for protocol 2.0
debug1: Local version string SSH-2.0-OpenSSH_5.2
debug1: SSH2_MSG_KEXINIT sent
debug1: SSH2_MSG_KEXINIT received
debug1: kex: server->client aes128-ctr hmac-md5 none
debug1: kex: client->server aes128-ctr hmac-md5 none
debug1: SSH2_MSG_KEX_DH_GEX_REQUEST(1024<1024<8192) sent
debug1: expecting SSH2_MSG_KEX_DH_GEX_GROUP
debug1: SSH2_MSG_KEX_DH_GEX_INIT sent
debug1: expecting SSH2_MSG_KEX_DH_GEX_REPLY
debug1: Host 'ec2-xxx-xxx-xxx.compute-1.amazonaws.com' is known and matches the RSA host key.
debug1: Found key in /Users/joshuascott/.ssh/known_hosts:3
debug1: ssh_rsa_verify: signature correct
debug1: SSH2_MSG_NEWKEYS sent
debug1: expecting SSH2_MSG_NEWKEYS
debug1: SSH2_MSG_NEWKEYS received
debug1: SSH2_MSG_SERVICE_REQUEST sent
debug1: SSH2_MSG_SERVICE_ACCEPT received
debug1: Authentications that can continue: publickey,gssapi-with-mic
debug1: Next authentication method: publickey
debug1: Offering public key: pk-xxxxxxxxxxxxxxxxxxxxxxxx.pem
debug1: Authentications that can continue: publickey,gssapi-with-mic
debug1: Trying private key: OFMoodle
debug1: read PEM private key done: type RSA
debug1: Authentications that can continue: publickey,gssapi-with-mic
debug1: No more authentication methods to try.
Permission denied (publickey,gssapi-with-mic).
我茫然很完全。我还有其他几个可以连接到的问题。
答
起初,我会确保用户确实是根而不是Ubuntu的或EC2用户。
否则,可能是.ssh/
和.ssh/authorized_keys
上的权限为borked。
+1
如果您的home或〜/ .ssh目录具有组写入权限,SSH不会喜欢它。您的主目录应该只能由您写入,〜/ .ssh应该是700,并且authorized_keys应该是600 [_Source_](http://recursive-design.com/blog/2010/09/14/ssh-authentication-refused /) – Junky 2013-03-02 22:12:35
更适合serverfault? – 2010-02-02 05:30:39