OCI: “no-port-forwarding, no-agent-forwarding, no-X11-forwarding" in root user authorized_keys
Applies to :
Oracle Cloud Infrastructure - Version N/A and later
Linux x86-64
Goal
In OCI Oracle Linux platform image instances, the file /root/.ssh/authorized_keys
is automatically updated to contain the following:
no-port-forwarding, no-agent-forwarding, no-X11-forwarding, command="echo 'Please login as the user \"opc\" rather than the user \"root\".';echo;sleep 10"<public-key may be present here>
Solution
For security reasons, the root user in OCI Oracle Linux systems is not enabled for SSH login. In the same sense, it should be avoided to setup an SSH key for the root user in /root/.ssh/authorized_keys
0