• sshpass 绕过ssh 密码交互式验证


    经常我们使用脚本登入服务器的时候,如果使用ssh 命令,经常会提示密码输入,我们不得不手动输入密码,因为ssh 没有 密码的选项。

    为了能绕过交互式验证,我们使用sshpass命令解决这个问题:

    1. 安装

    ➜  Desktop sudo yum install sshpass
    [sudo] password for xuyaowen: 
    Last metadata expiration check: 0:04:22 ago on Mon 02 Jul 2018 11:25:32 AM CST.
    Package sshpass-1.06-5.fc28.x86_64 is already installed, skipping.
    Dependencies resolved.
    Nothing to do.
    Complete!

    检查是否安装

    [root@yaowenxu Desktop]# rpm -qa sshpass
    sshpass-1.06-5.fc28.x86_64

    2. 查看 sshpass 命令帮助, 也可以使用 man sshpass 

    NAME
           sshpass - noninteractive ssh password provider
    
    SYNOPSIS
           sshpass [-ffilename|-dnum|-ppassword|-e] [options] command arguments
    
    DESCRIPTION
           This manual page documents the sshpass command.
    
           sshpass is a utility designed for running ssh using the mode referred to as "keyboard-interactive" password authentication, but in non-interactive mode.
    
           ssh uses direct TTY access to make sure that the password is indeed issued by an interactive keyboard user. Sshpass runs ssh in a dedicated tty, fooling
           it into thinking it is getting the password from an interactive user.
    
           The command to run is specified after sshpass' own options. Typically it will be "ssh" with arguments, but it can just as well be any other command. The
           password prompt used by ssh is, however, currently hardcoded into sshpass.
    View Code
    [root@yaowenxu Desktop]# sshpass
    Usage: sshpass [-f|-d|-p|-e] [-hV] command parameters
       -f filename   Take password to use from file
       -d number     Use number as file descriptor for getting password
       -p password   Provide password as argument (security unwise)
       -e            Password is passed as env-var "SSHPASS"
       With no parameters - password will be taken from stdin
    
       -P prompt     Which string should sshpass search for to detect a password prompt
       -v            Be verbose about what you're doing
       -h            Show help (this screen)
       -V            Print version information
    At most one of -f, -d, -p or -e should be used

    3. 使用密码验证登录

    ➜  ~ sshpass -p 123 ssh root@10.66.65.15

    4. ssh 第一次登录提示问题使用:

    ssh -o StrictHostKeyChecking=no

    来解决 

    ➜  Desktop sshpass  -p 123 ssh -o StrictHostKeyChecking=no root@10.66.8.142
    Warning: Permanently added '10.66.8.142' (ECDSA) to the list of known hosts.
    Last login: Mon Jul  2 10:51:29 2018

    5. 优缺点

    优点: 快速,便捷

    缺点: 密码明文暴露,可以使用 history 命令查找到

  • 相关阅读:
    linux 修改 properties
    用Python串口实时显示数据并绘图pyqtgraph
    Python pip国内源
    设计模式之享元模式
    阿里云数据库李飞飞:云计算推动数据库向云原生快速演进
    不懂代码,他怎么开发了20多个政务应用?
    2021十大科技趋势来了!阿里巴巴达摩院全新发布
    2020年勒索病毒事件盘点及未来发展趋势
    一文详解 Nacos 高可用特性
    “让专业的人做专业的事”,畅捷通与阿里云的云原生故事 | 云原生 Talk
  • 原文地址:https://www.cnblogs.com/xuyaowen/p/sshpass_ssh.html
Copyright © 2020-2023  润新知