无法通过SSH连接到Google Compute Engine

Ily*_*pan 6 linux ssh google-compute-engine

我在一个新项目上设置了Google Compute Engine的新实例。我启动实例并使用命令gcloud init连接到我的项目。然后,我使用command sudo gcloud compute ssh instance-1。它需要我完成SSH密钥对生成:

WARNING: The private SSH key file for Google Compute Engine does not exist.
WARNING: You do not have an SSH key for Google Compute Engine.
WARNING: [/usr/bin/ssh-keygen] will be executed to generate a key.
Generating public/private rsa key pair.
Enter passphrase (empty for no passphrase): 
Enter same passphrase again: 
Your identification has been saved in /Users/username/.ssh/google_compute_engine.
Your public key has been saved in /Users/username/.ssh/google_compute_engine.pub.
The key fingerprint is:
SHA256:there_is_a_key_here_but_probably_should_not_show_it root@My-MacBook-Air-4.local
The key's randomart image is:
+---[RSA 2048]----+
|                 |
|                 |
|                 |
|                 |
|                 |
|                 |
|                 |
|There is an image|
|here             |
+----[SHA256]-----+
Updating project ssh metadata...\Updated [link to the project].
Updating project ssh metadata...done.                                                         
Warning: Permanently added 'compute.1788786712041991164' (ECDSA) to the list of known hosts.
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
Permission denied (publickey).
ERROR: (gcloud.compute.ssh) Could not SSH to the instance.  It is possible that your SSH key has not propagated to the instance yet. Try running this command again.  If you still cannot connect, verify that the firewall and instance are set to accept ssh traffic.
Run Code Online (Sandbox Code Playgroud)

奇怪的。我在Google Cloud Console中检查了元数据,它们在运行此命令后出现在其中。因此它已成功生成,并且元数据已更新。我稍等片刻,然后再次尝试相同的命令:

My-MacBook-Air-4:~ myname$ sudo gcloud compute ssh instance-1
Permission denied (publickey).
ERROR: (gcloud.compute.ssh) [/usr/bin/ssh] exited with return code [255]. See https://cloud.google.com/compute/docs/troubleshooting#ssherrors for troubleshooting hints.
Run Code Online (Sandbox Code Playgroud)

因此,我尝试了一些故障排除提示:

gcloud compute firewall-rules list

NAME                    NETWORK  SRC_RANGES    RULES                         SRC_TAGS  TARGET_TAGS
default-allow-http      default  0.0.0.0/0     tcp:80                                  http-server
default-allow-https     default  0.0.0.0/0     tcp:443                                 https-server
default-allow-icmp      default  0.0.0.0/0     icmp
default-allow-internal  default  10.128.0.0/9  tcp:0-65535,udp:0-65535,icmp
default-allow-rdp       default  0.0.0.0/0     tcp:3389
default-allow-ssh       default  0.0.0.0/0     tcp:22
Run Code Online (Sandbox Code Playgroud)

防火墙似乎很好。这发生在我在任何项目上创建的每个Google Compute Engine实例上。我不知道发生了什么,已经创建了密钥对,我在几个不同的项目上尝试了所有步骤几次,并且错误仍然存​​在。

编辑:密钥出现在项目的SSH选项卡中,“元数据”选项卡仍然为空。

Gri*_*vit 5

然后我使用命令 sudo gcloud compute ssh instance-1

sudo这里使用是错误的。看来您已经在其中创建了一个密钥,/Users/username/.ssh/google_compute_engine但是由于它具有注释root@My-MacBook-Air-4.local,因此可能是使用错误的所有权(即由root拥有)创建的。

您可能可以通过以下方法解决此问题:

 sudo chown $USER:$GROUPS ~/.ssh/google_compute_engine{,.pub}
Run Code Online (Sandbox Code Playgroud)

然后连接 sudo

 gcloud compute ssh instance-1
Run Code Online (Sandbox Code Playgroud)

或者,如果失败了,那就重新开始,但什么都不要用sudo