首页 文章

无法通过SSH连接到Google Compute Engine

提问于
浏览
3

我在一个新项目上设置了一个新的Google Compute Engine实例 . 我启动实例并使用命令 gcloud init 连接到我的项目 . 然后我使用命令 sudo gcloud compute ssh instance-1 . 它通过SSH密钥对生成:

WARNING: The private SSH key file for Google Compute Engine does not exist.
WARNING: You do not have an SSH key for Google Compute Engine.
WARNING: [/usr/bin/ssh-keygen] will be executed to generate a key.
Generating public/private rsa key pair.
Enter passphrase (empty for no passphrase): 
Enter same passphrase again: 
Your identification has been saved in /Users/username/.ssh/google_compute_engine.
Your public key has been saved in /Users/username/.ssh/google_compute_engine.pub.
The key fingerprint is:
SHA256:there_is_a_key_here_but_probably_should_not_show_it root@My-MacBook-Air-4.local
The key's randomart image is:
+---[RSA 2048]----+
|                 |
|                 |
|                 |
|                 |
|                 |
|                 |
|                 |
|There is an image|
|here             |
+----[SHA256]-----+
Updating project ssh metadata...\Updated [link to the project].
Updating project ssh metadata...done.                                                         
Warning: Permanently added 'compute.1788786712041991164' (ECDSA) to the list of known hosts.
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
ERROR: (gcloud.compute.ssh) Could not SSH to the instance.  It is possible that your SSH key has not propagated to the instance yet. Try running this command again.  If you still cannot connect, verify that the firewall and instance are set to accept ssh traffic.

奇怪的 . 我检查了我的Google Cloud 端控制台中的元数据,运行此命令后,它们出现在那里 . 因此它已成功生成并更新了元数据 . 我等一下,再次尝试相同的命令:

My-MacBook-Air-4:~ myname$ sudo gcloud compute ssh instance-1
Permission denied (publickey).
ERROR: (gcloud.compute.ssh) [/usr/bin/ssh] exited with return code [255]. See https://cloud.google.com/compute/docs/troubleshooting#ssherrors for troubleshooting hints.

所以我尝试了一些故障排除提示:

gcloud compute firewall-rules list

NAME                    NETWORK  SRC_RANGES    RULES                         SRC_TAGS  TARGET_TAGS
default-allow-http      default  0.0.0.0/0     tcp:80                                  http-server
default-allow-https     default  0.0.0.0/0     tcp:443                                 https-server
default-allow-icmp      default  0.0.0.0/0     icmp
default-allow-internal  default  10.128.0.0/9  tcp:0-65535,udp:0-65535,icmp
default-allow-rdp       default  0.0.0.0/0     tcp:3389
default-allow-ssh       default  0.0.0.0/0     tcp:22

防火墙似乎很好 . 这种情况发生在我在任何项目上创建的每个Google Compute Engine实例上 . 我不明白发生了什么,密钥对已经创建,我在几个不同的项目中多次尝试了所有步骤,错误仍然存在 .

编辑:键出现在项目的SSH选项卡中,元数据选项卡仍为空 .

1 回答

  • 3

    然后我使用命令sudo gcloud compute ssh instance-1

    在这里使用 sudo 是错误的 . 您似乎已在 /Users/username/.ssh/google_compute_engine 中创建了一个密钥,但由于它具有注释 root@My-MacBook-Air-4.local ,因此可能使用错误的所有权(即由root拥有)创建 .

    您可以通过以下方式解决此问题:

    sudo chown $USER:$GROUPS ~/.ssh/google_compute_engine{,.pub}
    

    然后连接 without sudo

    gcloud compute ssh instance-1
    

    或者,如果失败只是重新开始,但不要使用 sudo .

相关问题