Create an Ed25519 SSH Key

Recommended for almost everything: short, fast and secure. Supported by OpenSSH 6.5 (2014) and later. Fill in the details below for the exact commands; the key is made on your own computer.

  • Free
  • No Sign-Up
  • Runs in Your Browser
Key Type
Your Computer

Recommended for almost everything: short, fast and secure. Supported by OpenSSH 6.5 (2014) and later. Set a passphrase when asked.

1. Create the Key (on Your Computer)

ssh-keygen -t ed25519 -a 100 -C "you@laptop" -f ~/.ssh/id_ed25519

2. Copy It to the Server

ssh-copy-id -i ~/.ssh/id_ed25519.pub root@your-server

3. Optional: ~/.ssh/config

Host your-server
    User root
    IdentityFile ~/.ssh/id_ed25519
    IdentitiesOnly yes

4. Switch Off Password Logins

# On the server, after a key login works in a second window:
sudo tee /etc/ssh/sshd_config.d/10-keys-only.conf >/dev/null <<'EOF'
PasswordAuthentication no
KbdInteractiveAuthentication no
PermitRootLogin prohibit-password
EOF
sudo sshd -t && sudo systemctl reload ssh || sudo systemctl reload sshd

SSH Key Generator

Ed25519 keys

Commandssh-keygen -t ed25519 -a 100 -C "you@laptop"
Files~/.ssh/id_ed25519 and id_ed25519.pub
Copy to a Serverssh-copy-id -i ~/.ssh/id_ed25519.pub user@server

Recommended for almost everything: short, fast and secure. Supported by OpenSSH 6.5 (2014) and later.

Only the .pub file ever leaves your computer. Protect the private key with a passphrase.

Questions

How do I generate an Ed25519 key?
Run ssh-keygen -t ed25519 -a 100 -C "you@laptop" and set a passphrase when asked.

Run VMs for other people?

Frabs stops spam, scans and floods leaving your customers' VMs, before the abuse report lands.