2016-11-10 328 views
0

This answer是專門爲這類問題設計的,但它對我的數百個upvoters還沒有很清楚。AWS EC2權限被拒絕(公鑰)

我把我的鑰匙放在下載。它被發現了,但是當我使用用戶ubunto時,它似乎不被視爲公鑰。輸出在這篇文章的底部。我使用sudo chmod 600 ~/downloads/mykey.pem更改了權限,但結果相同。我使用sudo chmod 700 ~/downloads/mykey.pem更改了權限,結果也一樣。從this answer開始,我嘗試了sudo chown -R me ~/downloads/mykey.pem,然後sudo chgrp -R 501 ~/downloads/mykey.pem其中uid = 501(me)​​。

我試過ec-2和root用戶沒有成功。

與根爲EC-2

debug1: Authentications that can continue: publickey debug1: No more authentication methods to try. Permission denied (publickey).

與根作爲用戶

跳過輸出線

debug1: Trying private key: /Users/me/downloads/mykey.pem debug1: Authentication succeeded (publickey).

身份驗證成功,但連接關閉。

跳過輸出線

debug1: channel 0: free: port listener, nchannels 2 debug1: channel 1: free: port listener, nchannels 1 Connection to ec2-[myPublicIP].compute-1.amazonaws.com closed. Transferred: sent 3264, received 2456 bytes, in 10.3 seconds Bytes per second: sent 316.6, received 238.2 debug1: Exit status 0

下面是一個使用用戶ubunto,這個問題的標題是指輸出:

ssh -v -i ~/downloads/mykey.pem -L 60051:localhost:60051 [email protected][mypublicIP].compute-1.amazonaws.com OpenSSH_6.9p1, LibreSSL 2.1.8 debug1: Reading configuration data /etc/ssh/ssh_config debug1: /etc/ssh/ssh_config line 21: Applying options for * debug1: Connecting to ec2[mypublicIP].compute-1.amazonaws.com [[mypublicIP]] port 22. debug1: Connection established. debug1: key_load_public: No such file or directory debug1: identity file /Users/me/downloads/mykey.pem type -1 debug1: key_load_public: No such file or directory debug1: identity file /Users/me/downloads/mykey.pem-cert type -1 debug1: Enabling compatibility mode for protocol 2.0 debug1: Local version string SSH-2.0-OpenSSH_6.9 debug1: Remote protocol version 2.0, remote software version OpenSSH_6.6.1p1 Ubuntu-2ubuntu2.4 debug1: match: OpenSSH_6.6.1p1 Ubuntu-2ubuntu2.4 pat OpenSSH_6.6.1* compat 0x04000000 debug1: Authenticating to ec2-[mypublicIP].compute-1.amazonaws.com:22 as 'ubunto' debug1: SSH2_MSG_KEXINIT sent debug1: SSH2_MSG_KEXINIT received debug1: kex: server->client [email protected] <implicit> none debug1: kex: client->server [email protected] <implicit> none debug1: expecting SSH2_MSG_KEX_ECDH_REPLY debug1: Server host key: ecdsa-sha2-nistp256 SHA256:85gcFh6LySYszjod4WIx5wu7BUvKwL4M6EAcZkv0zGw debug1: Host 'ec2[mypublicIP].compute-1.amazonaws.com' is known and matches the ECDSA host key. debug1: Found key in /Users/me/.ssh/known_hosts:11 debug1: SSH2_MSG_NEWKEYS sent debug1: expecting SSH2_MSG_NEWKEYS debug1: SSH2_MSG_NEWKEYS received debug1: SSH2_MSG_SERVICE_REQUEST sent debug1: SSH2_MSG_SERVICE_ACCEPT received debug1: Authentications that can continue: publickey debug1: Next authentication method: publickey debug1: Trying private key: /Users/me/downloads/mykey.pem debug1: Authentications that can continue: publickey debug1: No more authentication methods to try. Permission denied (publickey).

回答

1

AMI是什麼你在用嗎?

Ubuntu AMI的股票默認用戶是ubuntu,而不是ubunto

除非您創建了一個特殊的AMI來設置用戶,否則該用戶將不在AMI上,因此無法進行身份驗證。