Server Configuration¶
-
Create a copy of the client host public key so that the server's host key is not overwritten.
CLIENT$ COPY SSH_HOST_RSA_KEY.PUB TESTPUBKEY.PUBTransfer the file to the server using SFTP.
$ SFTP serversftp> CD /SSH$ROOT/ETC sftp> PUT TESTPUBKEY.PUB sftp> EXIT -
Edit
SSH$ROOT:[ETC]SSHD_CONFIGand enable the following settings:UseDNS yes HostbasedAuthentication yesCreate or update
SSH_KNOWN_HOSTSusing the transferred host key:$ APPEND TESTPUBKEY.PUB SSH_KNOWN_HOSTS.or
$ RENAME TESTPUBKEY.PUB SSH_KNOWN_HOSTS.Edit
SSH_KNOWN_HOSTSand prepend the client's FQDN and IP address:$ EDIT SSH_KNOWN_HOSTS client.my.domain.com,10.10.118.7 ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAB...