<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SSH connection to SMB with keypair in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177827#M8722</link>
    <description>&lt;P&gt;Hi SMB Masters!&lt;/P&gt;&lt;P&gt;I would like to ask you if anyone have an experience how to setup SSH connection with keypair to Sparks. Anyone? I know it must be in bashUser etc. But SMB has no classic home folder for admin user for example. Where we should put keys if we want to do it?&lt;/P&gt;</description>
    <pubDate>Tue, 11 Apr 2023 07:43:13 GMT</pubDate>
    <dc:creator>Petr_Hantak</dc:creator>
    <dc:date>2023-04-11T07:43:13Z</dc:date>
    <item>
      <title>SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177827#M8722</link>
      <description>&lt;P&gt;Hi SMB Masters!&lt;/P&gt;&lt;P&gt;I would like to ask you if anyone have an experience how to setup SSH connection with keypair to Sparks. Anyone? I know it must be in bashUser etc. But SMB has no classic home folder for admin user for example. Where we should put keys if we want to do it?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Apr 2023 07:43:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177827#M8722</guid>
      <dc:creator>Petr_Hantak</dc:creator>
      <dc:date>2023-04-11T07:43:13Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177969#M8732</link>
      <description>&lt;P&gt;Root's "home" directory is / (i.e. the root filesystem).&lt;BR /&gt;Which would imply that you can create a /.ssh/authorized_keys file.&lt;BR /&gt;However, in R81.10.05, it appears this is disabled in /pfrm2.0/etc/sshd_config&lt;BR /&gt;(Earlier code revisions use dropbear, which may already allow this)&lt;/P&gt;
&lt;P&gt;You might be able to tweak the configuration to make this work.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 16:41:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177969#M8732</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-12T16:41:21Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177970#M8733</link>
      <description>&lt;P&gt;The official procedure for this:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk179986" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk179986&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Note that it only applies to Quantum Spark SMB appliances running R81.10.xx where OpenSSH is used instead of Dropbear.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 16:50:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/177970#M8733</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-12T16:50:42Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/178254#M8739</link>
      <description>&lt;P&gt;For&amp;nbsp;Security Gateway 80 / 600 / 700 / 1100 / 1200R/ 1400 appliances see here: &lt;A href="https://community.checkpoint.com/t5/SMB-Gateways-Spark/Perform-scheduled-scripted-tasks-on-SMB-devices-without-using/m-p/40054?search-action-id=62382368685&amp;amp;search-result-uid=40054" target="_blank"&gt;https://community.checkpoint.com/t5/SMB-Gateways-Spark/Perform-scheduled-scripted-tasks-on-SMB-devices-without-using/m-p/40054?search-action-id=62382368685&amp;amp;search-result-uid=40054&lt;/A&gt; and &lt;A class="cp_link sc_ellipsis" style="max-width: 840px;" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk106836&amp;amp;partition=Advanced&amp;amp;product=Small" target="_blank" rel="noopener noreferrer"&gt;sk106836: &lt;STRONG&gt;How&lt;/STRONG&gt; to &lt;STRONG&gt;configure&lt;/STRONG&gt; &lt;STRONG&gt;SSH&lt;/STRONG&gt; &lt;STRONG&gt;authentication&lt;/STRONG&gt; &lt;STRONG&gt;using&lt;/STRONG&gt; &lt;STRONG&gt;RSA&lt;/STRONG&gt; &lt;STRONG&gt;key&lt;/STRONG&gt; &lt;STRONG&gt;files&lt;/STRONG&gt; on &lt;STRONG&gt;Security&lt;/STRONG&gt; &lt;STRONG&gt;Gateway&lt;/STRONG&gt; &lt;STRONG&gt;80&lt;/STRONG&gt; / &lt;STRONG&gt;600&lt;/STRONG&gt; / &lt;STRONG&gt;700&lt;/STRONG&gt;...&lt;/A&gt;.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 15:45:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/178254#M8739</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-04-17T15:45:45Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/178325#M8740</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;thank you guys! I am surprised that I was not able to find newest SK myself when I was digging in knowledge base.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Apr 2023 06:32:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/178325#M8740</guid>
      <dc:creator>Petr_Hantak</dc:creator>
      <dc:date>2023-04-18T06:32:58Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/196003#M9670</link>
      <description>&lt;P&gt;Deleted.&lt;/P&gt;&lt;P&gt;It was still online last week. It's really annoying that published SKs constantly get retracted without any kind of explanation/justification.&lt;/P&gt;&lt;P&gt;Edit :&lt;/P&gt;&lt;P&gt;It seems like this SK's content made its way to the Admin Guide.&lt;BR /&gt;&lt;A href="https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Locally_Managed/EN/Content/Topics/SSH-Authentication.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Locally_Managed/EN/Content/Topics/SSH-Authentication.htm&lt;/A&gt;&lt;BR /&gt;That's probably where I read about this last week.&lt;BR /&gt;Deleted SKs are still an issue though.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Oct 2023 13:54:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/196003#M9670</guid>
      <dc:creator>nmelay1</dc:creator>
      <dc:date>2023-10-24T13:54:11Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/196007#M9672</link>
      <description>&lt;P&gt;mkdir /storage/.ssh&lt;BR /&gt;chmod 700&amp;nbsp;/storage/.ssh&lt;BR /&gt;cd&amp;nbsp;/storage/.ssh&lt;BR /&gt;touch authorized_keys&lt;BR /&gt;chmod 600&amp;nbsp;authorized_keys&lt;BR /&gt;cat &amp;gt;&amp;gt;&amp;nbsp;authorized_keys&lt;FONT color="#FF0000"&gt;&lt;EM&gt; (paste your key(s), end with Ctrl-D)&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;sed -i '/^AuthorizedKeysFile/s!none!/storage/.ssh/authorized_keys!' /pfrm2.0/etc/sshd_config&lt;BR /&gt;/pfrm2.0/bin/sshd.sh&lt;/P&gt;&lt;P&gt;The last 2 commands need to be repeated after each firmware upgrade.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Oct 2023 09:46:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/196007#M9672</guid>
      <dc:creator>nmelay1</dc:creator>
      <dc:date>2023-10-24T09:46:35Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/205072#M10219</link>
      <description>&lt;P&gt;Sk has been deleted.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2024 15:44:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/205072#M10219</guid>
      <dc:creator>Oliver_Fink</dc:creator>
      <dc:date>2024-02-05T15:44:20Z</dc:date>
    </item>
    <item>
      <title>Re: SSH connection to SMB with keypair</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/205095#M10220</link>
      <description>&lt;P&gt;It's in the product documentation now: &lt;A href="https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Centrally_Managed/EN/Content/Topics/SSH-Authentication.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Centrally_Managed/EN/Content/Topics/SSH-Authentication.htm&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2024 21:33:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSH-connection-to-SMB-with-keypair/m-p/205095#M10220</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-02-05T21:33:05Z</dc:date>
    </item>
  </channel>
</rss>

