add ssh root access section to readme

This commit is contained in:
jwobith
2020-04-08 10:34:17 -04:00
parent 2dea46e37b
commit b54dee6a0f

View File

@ -14,6 +14,7 @@ Docker Gitea Service
- [Create git user](#create-git-user) - [Create git user](#create-git-user)
- [SSH passthrough](#ssh-passthrough) - [SSH passthrough](#ssh-passthrough)
* [Security](#security-note) * [Security](#security-note)
- [SSH root access](#ssh-root-access)
- [External ports](#external-ports) - [External ports](#external-ports)
* [Configuration](#configuration) * [Configuration](#configuration)
- [Environment](#environment) - [Environment](#environment)
@ -132,7 +133,7 @@ Make the file `/app/gitea/gitea` excecutable.
`sudo chmod +x /app/gitea/gitea` `sudo chmod +x /app/gitea/gitea`
Generate an SSH key for the `git` user and create a symlink between the container and host `authorized_keys`. Generate an SSH key for the `git` user. When prompted for a password you can leave it empty.
To generate an RSA key: To generate an RSA key:
@ -173,13 +174,13 @@ The first time you go to the site Gitea will guide you through the installation
* Create an administrator user with a strong password. * Create an administrator user with a strong password.
* Enter the email address and password for the Gitea server email account. * Enter the email address and password for the Gitea server email account.
* Enter the correct mail server information. * Enter the correct mail server information.
* Most of the remaining items should stay at the default setting. * The remaining items should stay at the default setting.
## Security ## Security
On the host machine, make sure to use a strong user password and strong SSH keys. When you create the Gitea administrator for the first time use a strong password as well. On the host machine, make sure to use a strong user password and strong SSH keys. When you create the Gitea administrator for the first time use a strong password as well.
### SSH ### SSH root access
Disable root SSH access on the host machine. Edit `/etc/ssh/sshd_config` by changing the following line: Disable root SSH access on the host machine. Edit `/etc/ssh/sshd_config` by changing the following line: