0Pricing
Linux Command Line Mastery · Leçon

Gestion des clés de l’interpréteur de commandes sécurisé

Mettez en place une authentification SSH sans mot de passe à l’aide de paires de clés pour renforcer la sécurité et simplifier l’accès.

Gestion des clés de l’interpréteur de commandes sécurisé est une leçon Linux Command Line Mastery gratuite sur CoddyKit. Ceci est la leçon 3 sur 4. Tu peux lire la leçon complète ci-dessous gratuitement — puis la pratiquer en direct dans le navigateur avec un éditeur de code intégré et un tuteur IA 24/7. Elle fait partie du parcours d'apprentissage Linux Command Line Mastery, et ta progression se synchronise sur le web et l'application CoddyKit. Le cours Linux Command Line Mastery comprend 4 leçons au total.

Certaines parties de cette leçon n'ont pas encore été traduites et s'affichent en anglais.

What are SSH Keys?

SSH keys are a secure way to log into a remote server without needing a password. Think of them as a digital key and lock system.

  • They provide stronger security than traditional passwords.
  • They offer convenience by enabling passwordless logins.
  • This lesson will guide you through setting them up.

Public and Private Key Pair

An SSH key system uses two parts: a public key and a private key.

  • Your private key stays on your local computer and must be kept secret. Never share it!
  • Your public key can be freely shared. You place it on any server you want to connect to.
  • When you try to connect, the server uses your public key to verify your private key, allowing access.

Generating Your Own SSH Keys

You create an SSH key pair using the ssh-keygen command in your terminal.

By default, it creates keys in the ~/.ssh/ directory (a hidden folder in your home directory). The most common key type is RSA.

You'll be prompted for a passphrase. This adds an extra layer of security to your private key, encrypting it. It's highly recommended!

Hands-on: Using `ssh-keygen`

Let's generate an RSA key pair. When prompted, you can press Enter to use default file locations and choose a strong passphrase (or leave it empty for no passphrase, though not recommended for security).

ssh-keygen -t rsa -b 4096

Understanding Key Files

After running ssh-keygen, you'll find two new files in your ~/.ssh/ directory:

  • id_rsa: This is your private key. Keep it safe and never share it!
  • id_rsa.pub: This is your public key. You'll copy this to remote servers.

The command also shows a key fingerprint, a unique identifier for your key pair.

Copying Your Public Key to a Server

To enable passwordless login, your public key needs to be on the remote server. The easiest way to do this is with the ssh-copy-id command.

It automatically appends your public key to the ~/.ssh/authorized_keys file on the server. You'll need to enter the server's password just this one time.

ssh-copy-id user@remote_host

Manual Public Key Installation

If ssh-copy-id isn't available on your system, you can manually copy your public key. This involves reading your local public key and piping it to the remote server via SSH, appending it to the authorized_keys file.

Make sure the .ssh directory exists and has correct permissions on the server (chmod 700 ~/.ssh).

cat ~/.ssh/id_rsa.pub | ssh user@remote_host "mkdir -p ~/.ssh && chmod 700 ~/.ssh && cat >> ~/.ssh/authorized_keys"

Testing Passwordless Login

Once your public key is on the server, try logging in. If you set a passphrase, you'll be prompted for it. If not, you should connect directly without any password prompts!

This confirms that your SSH key authentication is working correctly.

ssh user@remote_host

Using `ssh-agent` for Convenience

If your private key has a passphrase, you'll be asked for it every time you connect. The SSH agent helps by storing your decrypted private key in memory.

  • Start the agent: eval "$(ssh-agent -s)"
  • Add your key: ssh-add ~/.ssh/id_rsa (enter passphrase once)

Now you can connect multiple times without re-entering your passphrase until the agent restarts.

eval "$(ssh-agent -s)"
ssh-add ~/.ssh/id_rsa

Quick Check: SSH Key Files

Which of the following files contains your public key and is safe to share with remote servers?

Recap: Secure Key Management

You've learned how to set up and manage SSH key pairs for secure, passwordless authentication.

  • Generate keys with ssh-keygen.
  • Understand private (id_rsa) and public (id_rsa.pub) keys.
  • Copy public keys to servers using ssh-copy-id or manually.
  • Use ssh-agent and ssh-add for passphrase convenience.

SSH keys are a fundamental tool for efficient and secure remote access in Linux!

Questions Fréquemment Posées

La leçon « Gestion des clés de l’interpréteur de commandes sécurisé » est-elle gratuite ?

Oui — le texte complet de « Gestion des clés de l’interpréteur de commandes sécurisé » est gratuit à lire ici sur le web. Pour la pratiquer de manière interactive (un éditeur de code intégré et un tuteur IA 24/7) et déverrouiller le reste du cours Linux Command Line Mastery, passe à CoddyKit PRO. Le cours Linux Command Line Mastery comprend 4 leçons au total.

Qu'est-ce que j'apprendrai dans « Gestion des clés de l’interpréteur de commandes sécurisé » ?

Mettez en place une authentification SSH sans mot de passe à l’aide de paires de clés pour renforcer la sécurité et simplifier l’accès. Tu pratiques Linux Command Line Mastery avec du code pratique que tu exécutes directement dans le navigateur, et un tuteur IA 24/7 répond à tes questions au fur et à mesure que tu avances dans la leçon.

Dois-je avoir de l'expérience pour commencer Linux Command Line Mastery ?

Aucune expérience préalable n'est requise. Linux Command Line Mastery sur CoddyKit est structuré pour les débutants jusqu'aux apprenants avancés, donc tu peux commencer ici ou depuis le début et avancer à ton rythme. Ceci est la leçon 3 sur 4.

Combien de temps prend la leçon « Gestion des clés de l’interpréteur de commandes sécurisé » ?

La plupart des leçons CoddyKit prennent environ 5–10 minutes. Chacune est courte et interactive, tu progresses régulièrement et tu repiques exactement où tu t'es arrêté sur le web et l'app.

Peux-tu écrire et exécuter du code dans cette leçon Linux Command Line Mastery ?

Oui. Chaque leçon Linux Command Line Mastery inclut un éditeur de code intégré, tu écris et exécutes du vrai code directement dans ton navigateur et tu reçois des retours IA instantanés — aucune configuration locale requise.

Toutes les leçons de ce cours

  1. Diagnostic réseau : `traceroute`, `nslookup`, `dig`
  2. Gestion du pare-feu : `ufw`, `firewalld`, `iptables`
  3. Gestion des clés de l’interpréteur de commandes sécurisé
  4. Capturer et inspecter le trafic avec tcpdump
← Retour à Linux Command Line Mastery