<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Kangzj &#187; OpenSSH</title>
	<atom:link href="http://kangzj.net/tag/openssh/feed/" rel="self" type="application/rss+xml" />
	<link>http://kangzj.net</link>
	<description>记录技术和生活~</description>
	<lastBuildDate>Thu, 09 Feb 2012 00:57:15 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>CentOS中用dropbear替换OpenSSH</title>
		<link>http://kangzj.net/centos-change-openssh-to-dropbear/</link>
		<comments>http://kangzj.net/centos-change-openssh-to-dropbear/#comments</comments>
		<pubDate>Wed, 02 Jun 2010 03:22:31 +0000</pubDate>
		<dc:creator>kangzj</dc:creator>
				<category><![CDATA[服务器OS]]></category>
		<category><![CDATA[centos]]></category>
		<category><![CDATA[dropbear]]></category>
		<category><![CDATA[OpenSSH]]></category>
		<category><![CDATA[sshd]]></category>

		<guid isPermaLink="false">http://kangzj.net/?p=1740</guid>
		<description><![CDATA[dropbear是轻量的sshd服务器，与OpenSSH相比，他更简洁，更小巧，运行起来占用的内存也更少。]]></description>
			<content:encoded><![CDATA[<p>dropbear是轻量的sshd服务器，与OpenSSH相比，他更简洁，更小巧，运行起来占用的内存也更少。如果你的VPS只有128M内存，甚至64M内存，而你又比较喜欢开多个ssh终端，或者开一些ssh账号给其他同学用的话，还是比较有必要的，因为，每一个普通用户登录，OpenSSH会开两个sshd进程，而dropbear只开一个进程，这样算起来，OpenSSH内存占用是dropbear的5-6倍。</p>
<p>Debian系统的看这里：<a title="http://www.vpsee.com/2009/06/64mb-vps-optimize-debian5/" href="http://www.vpsee.com/2009/06/64mb-vps-optimize-debian5/">http://www.vpsee.com/2009/06/64mb-vps-optimize-debian5/</a></p>
<p>好了，不说了，开弄。<span id="more-1740"></span></p>
<h3>1. 下载dropbear</h3>
<blockquote><p>wget <a title="http://matt.ucc.asn.au/dropbear/dropbear-0.52.tar.gz" href="http://matt.ucc.asn.au/dropbear/dropbear-0.52.tar.gz">http://matt.ucc.asn.au/dropbear/dropbear-0.52.tar.gz</a></p>
<p>tar -xvzf dropbear-0.52.tar.gz</p>
<p>cd dropbear-0.52</p>
<p>./configure</p>
<p>#先不要急于make和make install</p></blockquote>
<h3>2. 编译安装dropbear</h3>
<p>OpenSSH不要马上停掉，否则，一量dropbear安装失败就连不上vps了(有console access的除外)。先把OpenSSH换个端口：</p>
<blockquote><p>vi /etc/ssh/sshd_config</p></blockquote>
<p>找到Port 22换成Port 2200</p>
<p>再执行：</p>
<blockquote><p>service sshd restart</p></blockquote>
<p>于是OpenSSH就监听2200端口了，好了，下面可以编译安装dropbear了：</p>
<blockquote><p>make &amp;&amp; make install</p></blockquote>
<h3>3. 配置dropbear</h3>
<p>sshd服务器都需要公钥啊啥啥的，下面就来生成一下：</p>
<blockquote><p>mkdir /etc/dropbear</p>
<p>/usr/local/bin/dropbearkey -t dss -f /etc/dropbear/dropbear_dss_host_key</p>
<p>/usr/local/bin/dropbearkey -t rsa -s 4096 -f /etc/dropbear/dropbear_rsa_host_key</p></blockquote>
<p>这就配置完成了，启动就更简单了：</p>
<blockquote><p>/usr/local/sbin/dropbear</p></blockquote>
<p>设置成开机自动启动：</p>
<blockquote><p>vi /etc/rc.local</p></blockquote>
<p>在最后加一行：</p>
<blockquote><p>/usr/local/sbin/dropbear</p></blockquote>
<h3>4. dropbear的补充说明</h3>
<p>dropbear默认的安装路径是：/usr/local/sbin</p>
<p>如果想监听特定的端口，按如下格式执行，如果不加此参数则会监听默认端口：</p>
<blockquote><p>/usr/local/sbin/dropbear –p 2222</p></blockquote>
<p>更改默认监听的端口方法：</p>
<p>在编译dropbear之前，先执行（把2222换成您希望的端口即可）：</p>
<blockquote><p>sed -i &#8216;s/22/2222/g&#8217; options.h</p></blockquote>
<p>安装需要以下的包，在安装之前可以先执行一下：</p>
<blockquote><p>yum install zlib* gcc make</p></blockquote>
<p>还有其他问题的，可以：</p>
<blockquote><p>/usr/local/sbin/dropbear -h</p></blockquote>
<p>自己看帮助去吧。</p>
<p style='text-align:left'>&copy; 2010, <a href='http://kangzj.net'>kangzj</a>. 版权所有.  </p>
<hr />
<p><small>© kangzj for <a href="http://kangzj.net">Kangzj</a>, 2010. |
<a href="http://kangzj.net/centos-change-openssh-to-dropbear/">http://kangzj.net/centos-change-openssh-to-dropbear/</a> |
<a href="http://kangzj.net/centos-change-openssh-to-dropbear/#comments">78 条评论</a> |
Add to
<a href="http://del.icio.us/post?url=http://kangzj.net/centos-change-openssh-to-dropbear/&title=CentOS中用dropbear替换OpenSSH">del.icio.us</a>
<br/>
Post tags: <a href="http://kangzj.net/tag/centos/" rel="tag">centos</a>, <a href="http://kangzj.net/tag/dropbear/" rel="tag">dropbear</a>, <a href="http://kangzj.net/tag/openssh/" rel="tag">OpenSSH</a>, <a href="http://kangzj.net/tag/sshd/" rel="tag">sshd</a><br/>
</small></p>]]></content:encoded>
			<wfw:commentRss>http://kangzj.net/centos-change-openssh-to-dropbear/feed/</wfw:commentRss>
		<slash:comments>78</slash:comments>
		</item>
	</channel>
</rss>

