SSH到EC2但获得权限被拒绝(publickey)

问题描述:

我通过EC2-Console生成密钥对,然后将其存储在〜/ .ssh/iForests_ABetADay.pem中。
之后,chmod 400 iForests_ABetADay.pem和ssh -i iForests_ABetADay.pem [email protected] -v。
我昨天登录,但现在我得到的错误信息是:
(谷歌很多,但仍无法找出一个办法来解决它...)
SSH到EC2但获得权限被拒绝(publickey)

OpenSSH_5.6p1, OpenSSL 0.9.8r 8 Feb 2011 
debug1: Reading configuration data /etc/ssh_config 
debug1: Applying options for * 
debug1: Connecting to 46.51.244.48 [46.51.244.48] port 22. 
debug1: Connection established. 
debug1: identity file iForests_ABetADay.pem type -1 
debug1: identity file iForests_ABetADay.pem-cert type -1 
debug1: Remote protocol version 2.0, remote software version OpenSSH_5.8p1 Debian-1ubuntu3 
debug1: match: OpenSSH_5.8p1 Debian-1ubuntu3 pat OpenSSH* 
debug1: Enabling compatibility mode for protocol 2.0 
debug1: Local version string SSH-2.0-OpenSSH_5.6 
debug1: SSH2_MSG_KEXINIT sent 
debug1: SSH2_MSG_KEXINIT received 
debug1: kex: server->client aes128-ctr hmac-md5 none 
debug1: kex: client->server aes128-ctr hmac-md5 none 
debug1: SSH2_MSG_KEX_DH_GEX_REQUEST(1024<1024<8192) sent 
debug1: expecting SSH2_MSG_KEX_DH_GEX_GROUP 
debug1: SSH2_MSG_KEX_DH_GEX_INIT sent 
debug1: expecting SSH2_MSG_KEX_DH_GEX_REPLY 
debug1: Host '46.51.244.48' is known and matches the RSA host key. 
debug1: Found key in /Users/iforests/.ssh/known_hosts:17 
debug1: ssh_rsa_verify: signature correct 
debug1: SSH2_MSG_NEWKEYS sent 
debug1: expecting SSH2_MSG_NEWKEYS 
debug1: SSH2_MSG_NEWKEYS received 
debug1: Roaming not allowed by server 
debug1: SSH2_MSG_SERVICE_REQUEST sent 
debug1: SSH2_MSG_SERVICE_ACCEPT received 
debug1: Authentications that can continue: publickey 
debug1: Next authentication method: publickey 
debug1: Trying private key: iForests_ABetADay.pem 
debug1: read PEM private key done: type RSA 
debug1: Authentications that can continue: publickey 
debug1: No more authentication methods to try. 
Permission denied (publickey). 
+0

你为了解决这个问题而改变了什么? – cxdf

输出清楚地显示它尝试错误的关键。我建议你检查

~/.ssh/config 
/etc/ssh/ssh_config 
/etc/ssh_config 

,看东西迫使你的客户端使用iForests_ABetADay.pem。根据日志,它必须是/etc/ssh_config

+0

您如何从日志中知道iForests_ABetADay.pem是错误的密钥? – cxdf

+2

作者改变了他的问题。最初,我是通过EC2-Console生成密钥对,然后将它存储在〜/ .ssh/key.pem中。 之后,chmod 400 key.pem和ssh -i key.pem [email protected] -v.'所以问题被提出时,关键是不同的。 –

+0

明白了。谢谢。 – cxdf