{"id":34698,"date":"2023-06-27T16:06:03","date_gmt":"2023-06-27T13:06:03","guid":{"rendered":"https:\/\/www.natro.com\/blog\/?p=34698"},"modified":"2023-07-11T10:01:28","modified_gmt":"2023-07-11T07:01:28","slug":"linux-sunucularda-iki-faktorlu-dogrulama-nasil-yapilir","status":"publish","type":"post","link":"https:\/\/www.natro.com\/blog\/linux-sunucularda-iki-faktorlu-dogrulama-nasil-yapilir\/","title":{"rendered":"Linux Sunucularda \u0130ki Fakt\u00f6rl\u00fc Do\u011frulama Nas\u0131l Yap\u0131l\u0131r?"},"content":{"rendered":"\n<p>\u0130ki fakt\u00f6rl\u00fc do\u011frulama (2FA), kullan\u0131c\u0131lar\u0131n SSH (Secure Shell) protokol\u00fc arac\u0131l\u0131\u011f\u0131yla Linux sunucular\u0131na g\u00fcvenli bir \u015fekilde eri\u015fmelerini sa\u011flayan bir g\u00fcvenlik \u00f6nlemidir. 2FA, kullan\u0131c\u0131lar\u0131n standart \u015fifre tabanl\u0131 kimlik do\u011frulamas\u0131na ek olarak bir ikinci do\u011frulama fakt\u00f6r\u00fc sa\u011flamalar\u0131n\u0131 gerektirir.<\/p>\n\n\n\n<p><strong>\u0130ki fakt\u00f6rl\u00fc do\u011frulama genellikle \u015fu ad\u0131mlar\u0131 i\u00e7erir:<\/strong><\/p>\n\n\n\n<p><strong>1. Ad\u0131m: <\/strong>Kullan\u0131c\u0131 ad\u0131 ve \u015fifre ile geleneksel kimlik do\u011frulamas\u0131n\u0131 yapma.<\/p>\n\n\n\n<p><strong>2. Ad\u0131m<\/strong>: \u0130kinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flama. Bu fakt\u00f6r, genellikle bir mobil uygulama veya fiziksel bir cihaz arac\u0131l\u0131\u011f\u0131yla ger\u00e7ekle\u015ftirilir. \u00d6rne\u011fin, kullan\u0131c\u0131ya SMS ile g\u00f6nderilen bir do\u011frulama kodu, bir do\u011frulama uygulamas\u0131 taraf\u0131ndan \u00fcretilen dinamik bir kod veya bir donan\u0131m g\u00fcvenlik anahtar\u0131 olabilir.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-iki-faktorlu-dogrulamanin-yararlari-nelerdir\"><span id=\"iki-faktorlu-dogrulamanin-yararlari-nelerdir\"><strong>\u0130ki Fakt\u00f6rl\u00fc Do\u011frulaman\u0131n Yararlar\u0131 Nelerdir?<\/strong><\/span><\/h2>\n\n\n\n<p>\u0130ki fakt\u00f6rl\u00fc do\u011frulaman\u0131n pek \u00e7ok yarar\u0131 bulunuyor. Bu faydalar \u015fu \u015fekilde s\u0131ralanabilir:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Ek g\u00fcvenlik:<\/strong> \u015eifrelerin tek ba\u015f\u0131na ele ge\u00e7irilmesi veya k\u0131r\u0131lmas\u0131 durumunda bile, sald\u0131rgan\u0131n ikinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flamas\u0131 gerekmektedir. Bu, hesab\u0131n daha g\u00fcvende olmas\u0131n\u0131 sa\u011flar.<\/li>\n\n\n\n<li><strong>Farkl\u0131 do\u011frulama y\u00f6ntemleri:<\/strong> \u0130kinci do\u011frulama fakt\u00f6r\u00fc olarak kullan\u0131labilecek farkl\u0131 y\u00f6ntemler vard\u0131r. Bu, kullan\u0131c\u0131lara \u00e7e\u015fitli se\u00e7enekler sunar ve kendi tercihlerine g\u00f6re do\u011frulama y\u00f6ntemini se\u00e7melerine olanak tan\u0131r.<\/li>\n\n\n\n<li><strong>Kullan\u0131c\u0131 kimlik av\u0131 sald\u0131r\u0131lar\u0131na kar\u015f\u0131 koruma: <\/strong>\u0130ki fakt\u00f6rl\u00fc do\u011frulama, sald\u0131rganlar\u0131n kullan\u0131c\u0131 ad\u0131 ve \u015fifrelerini ele ge\u00e7irdiklerinde bile hesaplara eri\u015fmelerini zorla\u015ft\u0131r\u0131r, b\u00f6ylece kimlik av\u0131 sald\u0131r\u0131lar\u0131na kar\u015f\u0131 daha iyi koruma sa\u011flar.<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"846\" height=\"566\" src=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar.jpg\" alt=\"\" class=\"wp-image-33654\" srcset=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar.jpg 846w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-300x201.jpg 300w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-768x514.jpg 768w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-380x254.jpg 380w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-800x535.jpg 800w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-760x508.jpg 760w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2022\/07\/kaynak-kodu-ne-ise-yarar-600x401.jpg 600w\" sizes=\"(max-width: 846px) 100vw, 846px\" \/><\/figure>\n\n\n\n<h2 id=\"iki-faktorlu-dogrulamanin-zararlari-nelerdir\" class=\"wp-block-heading\"><strong>\u0130ki Fakt\u00f6rl\u00fc Do\u011frulaman\u0131n Zararlar\u0131 Nelerdir?<\/strong><\/h2>\n\n\n\n<p><strong>1. Ek karma\u015f\u0131kl\u0131k<\/strong>: \u0130kinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flamak i\u00e7in kullan\u0131c\u0131lar\u0131n ek ad\u0131mlar\u0131 tamamlamalar\u0131 gerekmektedir. Bu, baz\u0131 kullan\u0131c\u0131lar i\u00e7in karma\u015f\u0131k veya rahats\u0131z edici olabilir.<\/p>\n\n\n\n<p><strong>2. Yanl\u0131\u015f yap\u0131land\u0131rma riski:<\/strong> Yanl\u0131\u015f yap\u0131land\u0131r\u0131lan bir 2FA sisteminden kaynaklanan hatalar, kullan\u0131c\u0131lar\u0131 hesaplar\u0131na eri\u015fememe riskiyle kar\u015f\u0131 kar\u015f\u0131ya b\u0131rakabilir.<\/p>\n\n\n\n<p><strong>3. \u0130kinci fakt\u00f6r kayb\u0131<\/strong>: E\u011fer ikinci do\u011frulama fakt\u00f6r\u00fc olan bir cihaz kaybedilirse veya bozulursa, kullan\u0131c\u0131lar hesaplar\u0131na eri\u015fimde sorun ya\u015fayabilirler. Bu nedenle, do\u011fru bir yedekleme ve kurtarma plan\u0131n\u0131n olmas\u0131 \u00f6nemlidir. Kullan\u0131c\u0131lar\u0131n ikinci fakt\u00f6r cihazlar\u0131n\u0131 g\u00fcvende tutmalar\u0131 ve olas\u0131 kay\u0131plara kar\u015f\u0131 \u00f6nlemler almalar\u0131 gerekmektedir.<\/p>\n\n\n\n<p><strong>4. Kullan\u0131c\u0131lar\u0131n ikinci fakt\u00f6r\u00fc kullanma konusunda isteksizlikleri: <\/strong>Baz\u0131 kullan\u0131c\u0131lar, ikinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flama ad\u0131m\u0131n\u0131 zahmetli bulabilir veya kullanmaktan ka\u00e7\u0131nabilir. Bu durumda, g\u00fcvenlik riski olu\u015fabilir \u00e7\u00fcnk\u00fc tek fakt\u00f6rl\u00fc kimlik do\u011frulamas\u0131 daha az g\u00fcvenli olabilir.<\/p>\n\n\n\n<p><strong>5. Sistem entegrasyonu ve uyumluluk:<\/strong> \u0130ki fakt\u00f6rl\u00fc do\u011frulama, sistemlere entegre edilmeli ve uyumlu hale getirilmelidir. Bunu sa\u011flamak i\u00e7in baz\u0131 ek yaz\u0131l\u0131m veya yap\u0131land\u0131rma gerekebilir. Bu, sistem y\u00f6neticileri ve kullan\u0131c\u0131lar i\u00e7in ek i\u015f y\u00fck\u00fc ve zaman alabilir.<\/p>\n\n\n\n<p>\u0130ki fakt\u00f6rl\u00fc do\u011frulama, SSH giri\u015fi gibi hassas i\u015flemlerde ek g\u00fcvenlik sa\u011flayan etkili bir y\u00f6ntemdir. Bununla birlikte, kullan\u0131c\u0131lar\u0131n ek ad\u0131mlar\u0131 tamamlamas\u0131 ve ikinci fakt\u00f6r cihazlar\u0131n\u0131 g\u00fcvende tutmalar\u0131 gerekmektedir. Do\u011fru bir \u015fekilde yap\u0131land\u0131r\u0131ld\u0131\u011f\u0131nda, iki fakt\u00f6rl\u00fc do\u011frulama \u00f6nemli bir g\u00fcvenlik katman\u0131 sa\u011flar ve hesaplar\u0131n yetkisiz eri\u015fimden korunmas\u0131na yard\u0131mc\u0131 olur.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-1024x576.jpg\" alt=\"\" class=\"wp-image-24571\" srcset=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-1024x576.jpg 1024w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-300x169.jpg 300w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-768x432.jpg 768w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-360x203.jpg 360w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-545x307.jpg 545w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir-1600x900.jpg 1600w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2018\/02\/sunucu-nedir.jpg 1838w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 id=\"iki-faktorlu-dogrulama-sunuculara-nasil-kurulur-ve-yapilandirilir\" class=\"wp-block-heading\"><strong>\u0130ki Fakt\u00f6rl\u00fc Do\u011frulama Sunuculara <\/strong>Nas\u0131l <strong>Kurulur ve Yap\u0131land\u0131r\u0131l\u0131r?<\/strong><\/h2>\n\n\n\n<p><strong>Uyumlu bir ikinci do\u011frulama y\u00f6ntemi se\u00e7in:<\/strong> \u0130kinci do\u011frulama fakt\u00f6r\u00fc olarak kullanabilece\u011finiz farkl\u0131 y\u00f6ntemler vard\u0131r. Bunlar aras\u0131nda SMS tabanl\u0131 do\u011frulama, do\u011frulama uygulamalar\u0131 (Google Authenticator, Authy vb.) veya donan\u0131m tabanl\u0131 g\u00fcvenlik anahtarlar\u0131 (YubiKey vb.) yer alabilir. \u0130htiya\u00e7lar\u0131n\u0131za ve tercihlerinize en uygun olan\u0131 se\u00e7in.<\/p>\n\n\n\n<p><strong>\u0130kinci do\u011frulama hizmetini kurun:<\/strong> Se\u00e7ti\u011finiz ikinci do\u011frulama y\u00f6ntemine g\u00f6re, ilgili hizmeti sunucunuza kurman\u0131z gerekebilir. \u00d6rne\u011fin, Google Authenticator uygulamas\u0131n\u0131 kullanmay\u0131 se\u00e7tiyseniz, sunucunuzda bir PAM (Pluggable Authentication Modules) mod\u00fcl\u00fc olan \u201clibpam-google-authenticator\u201d\u0131 y\u00fcklemeniz gerekebilir.<\/p>\n\n\n\n<p><strong>\u0130kinci do\u011frulama y\u00f6ntemini kullan\u0131c\u0131 hesaplar\u0131na ba\u011flay\u0131n: <\/strong>Kullan\u0131c\u0131lar\u0131n ikinci do\u011frulama fakt\u00f6r\u00fcn\u00fc kullanabilmeleri i\u00e7in hesaplar\u0131na ba\u011flant\u0131 kurman\u0131z gerekmektedir. Bunun i\u00e7in, kullan\u0131c\u0131 hesaplar\u0131n\u0131n PAM yap\u0131land\u0131rma dosyalar\u0131n\u0131 d\u00fczenlemeniz gerekebilir (genellikle \u201c\/etc\/pam.d\/sshd\u201d dosyas\u0131). Bu dosyada, ilgili sat\u0131rlar\u0131 ekleyerek ikinci do\u011frulamay\u0131 etkinle\u015ftirebilirsiniz.<\/p>\n\n\n\n<p><strong>Kullan\u0131c\u0131lar\u0131n ikinci do\u011frulama ayarlar\u0131n\u0131 yap\u0131land\u0131r\u0131n:<\/strong> Kullan\u0131c\u0131lar\u0131n ikinci do\u011frulama y\u00f6ntemini kullanabilmeleri i\u00e7in kendi hesaplar\u0131nda ilgili ayarlar\u0131 yapmalar\u0131 gerekebilir. \u00d6rne\u011fin, Google Authenticator uygulamas\u0131n\u0131 kullan\u0131yorlarsa, bir QR kodu tarayarak do\u011frulama kodlar\u0131n\u0131 olu\u015fturmal\u0131d\u0131rlar.<\/p>\n\n\n\n<p><strong>\u0130ki fakt\u00f6rl\u00fc do\u011frulamay\u0131 test edin:<\/strong> Ayarlamalar\u0131 tamamlad\u0131ktan sonra, bir test kullan\u0131c\u0131s\u0131yla SSH eri\u015fimini deneyerek iki fakt\u00f6rl\u00fc do\u011frulaman\u0131n d\u00fczg\u00fcn \u00e7al\u0131\u015ft\u0131\u011f\u0131ndan emin olun. Kullan\u0131c\u0131lar\u0131n hem \u015fifrelerini girmeleri hem de ikinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flamalar\u0131 gerekti\u011fini g\u00f6rmelisiniz.<\/p>\n\n\n\n<p>Bu ad\u0131mlar genel bir rehber niteli\u011findedir ve kullan\u0131lan ikinci do\u011frulama y\u00f6ntemine g\u00f6re de\u011fi\u015fiklik g\u00f6sterebilir. \u0130\u015fletim sisteminizin ve se\u00e7ti\u011finiz ikinci do\u011frulama y\u00f6nteminin belgelendirmesini ve kaynaklar\u0131n\u0131 incelemek \u00f6nemlidir. Ayr\u0131ca, sunucunuzun g\u00fcvenli\u011fini sa\u011flamak i\u00e7in iyi parola, politikalar ve di\u011fer g\u00fcvenlik \u00f6nlemlerini de g\u00f6zden ge\u00e7irmeniz \u00f6nemlidir. \u0130\u015fte ek ad\u0131mlar ve \u00f6nlemler:<\/p>\n\n\n\n<p><strong>Sunucu yap\u0131land\u0131rmas\u0131n\u0131 g\u00fcncelleyin: <\/strong>Sunucunuzun yap\u0131land\u0131rmas\u0131n\u0131 g\u00fcncellemek ve g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 en aza indirmek i\u00e7in d\u00fczenli g\u00fcncellemeleri uygulay\u0131n. \u0130\u015fletim sisteminizi, SSH sunucusunu ve kullan\u0131lan di\u011fer bile\u015fenleri g\u00fcncel tutun.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"683\" src=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-1024x683.jpg\" alt=\"\" class=\"wp-image-24753\" srcset=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-1024x683.jpg 1024w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-300x200.jpg 300w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-1536x1025.jpg 1536w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-270x180.jpg 270w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-770x515.jpg 770w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-768x512.jpg 768w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-360x240.jpg 360w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-545x364.jpg 545w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri-1600x1067.jpg 1600w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2015\/09\/wordpress-guvenlik-eklentileri.jpg 1688w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><strong>G\u00fcvenlik anahtarlar\u0131n\u0131 kullan\u0131n: <\/strong>SSH giri\u015fi i\u00e7in g\u00fcvenlik anahtarlar\u0131n\u0131 kullanmak, ek bir g\u00fcvenlik katman\u0131 sa\u011flar. Kullan\u0131c\u0131lar\u0131n\u0131z\u0131n g\u00fcvenlik anahtarlar\u0131n\u0131 olu\u015fturmas\u0131n\u0131 ve bunlar\u0131 sunucuda do\u011fru \u015fekilde yap\u0131land\u0131rman\u0131z\u0131 sa\u011flay\u0131n.<\/p>\n\n\n\n<p><strong>Hesap kilitlenmesini yap\u0131land\u0131r\u0131n: <\/strong>Birden fazla ba\u015far\u0131s\u0131z giri\u015f denemesi sonras\u0131 hesaplar\u0131n otomatik olarak kilitlenmesini sa\u011flayan bir politika olu\u015fturun. Bu, brute force sald\u0131r\u0131lar\u0131n\u0131 ve hesaplar\u0131n k\u00f6t\u00fcye kullan\u0131lmas\u0131n\u0131 \u00f6nlemeye yard\u0131mc\u0131 olur.<\/p>\n\n\n\n<p><strong>Loglama ve izleme: <\/strong>SSH giri\u015flerini loglamak ve izlemek, potansiyel g\u00fcvenlik ihlallerini belirleme ve yan\u0131t verme s\u00fcrecini kolayla\u015ft\u0131r\u0131r. Sunucunuzda uygun loglama ve izleme ayarlar\u0131n\u0131 yap\u0131land\u0131r\u0131n.<\/p>\n\n\n\n<p><strong>Kullan\u0131c\u0131 e\u011fitimi: <\/strong>\u0130ki fakt\u00f6rl\u00fc do\u011frulama hakk\u0131nda kullan\u0131c\u0131lar\u0131 bilgilendirin ve do\u011fru kullan\u0131m\u0131 konusunda e\u011fitin. Kullan\u0131c\u0131lar\u0131n ikinci do\u011frulama fakt\u00f6rlerini g\u00fcvende tutmalar\u0131 ve g\u00fc\u00e7l\u00fc \u015fifreler kullanmalar\u0131 konusunda fark\u0131ndal\u0131k yarat\u0131n.<\/p>\n\n\n\n<p>Bu ad\u0131mlar, genel olarak iki fakt\u00f6rl\u00fc do\u011frulaman\u0131n kurulum ve yap\u0131land\u0131rma s\u00fcrecini kapsar. Ancak, sunucunuzun \u00f6zel gereksinimlerine ve kullan\u0131lan da\u011f\u0131t\u0131ma ba\u011fl\u0131 olarak baz\u0131 farkl\u0131l\u0131klar olabilir. Dolay\u0131s\u0131yla, i\u015fletim sisteminizin belgelerini ve ilgili kaynaklar\u0131 dikkatlice incelemeniz, gerekti\u011finde destek alman\u0131z \u00f6nemlidir.<\/p>\n\n\n\n<h3 id=\"sunucuya-nasil-kurabiliriz\" class=\"wp-block-heading\">Sunucuya Nas\u0131l Kurabiliriz?<\/h3>\n\n\n\n<p>Ad\u0131m 1 : <strong>Google Authenticator\u2019\u0131 Y\u00fckleyin.<\/strong><\/p>\n\n\n\n<p>1.1. Linux sunucunuza SSH ile ba\u011flan\u0131n ve root yetkileriyle oturum a\u00e7\u0131n.<\/p>\n\n\n\n<p>1.2. \u0130kinci do\u011frulama olarak Google Authenticator kullanaca\u011f\u0131z, bu nedenle \u00f6ncelikle \u201c<strong>libpam-google-authenticator<\/strong>\u201d paketini y\u00fckleyin. Farkl\u0131 Linux da\u011f\u0131t\u0131mlar\u0131 i\u00e7in paket y\u00f6neticinizi kullanarak bu paketi y\u00fckleyin. \u00d6rne\u011fin, Ubuntu veya Debian \u00fczerinde a\u015fa\u011f\u0131daki komutu kullanabilirsiniz:<\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">sudo apt-get install libpam-google-authenticator<\/p>\n\n\n\n<p>Ad\u0131m 2: <strong>SSH Yap\u0131land\u0131rmalar\u0131n\u0131 De\u011fi\u015ftirin<\/strong><\/p>\n\n\n\n<p>2.1. SSH yap\u0131land\u0131rma dosyas\u0131n\u0131 d\u00fczenleyin. Genellikle \u201c\/etc\/ssh\/sshd_config\u201d dosyas\u0131d\u0131r. Bu dosyay\u0131 bir metin d\u00fczenleyiciyle a\u00e7\u0131n:<\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">sudo nano \/etc\/ssh\/sshd_config<\/p>\n\n\n\n<p>2.2. Dosyada <strong>\u201cChallengeResponseAuthentication\u201d sat\u0131r\u0131n\u0131 bulun ve bunun alt\u0131na a\u015fa\u011f\u0131daki sat\u0131rlar\u0131 ekleyin:<\/strong><\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">AuthenticationMethods publickey,keyboard-interactive<\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">AuthenticationMethods publickey,keyboard-interactive:pam<\/p>\n\n\n\n<p>Bu, SSH\u2019nin hem genel anahtar do\u011frulamas\u0131n\u0131 hem de klavye etkile\u015fimli do\u011frulamay\u0131 (PAM ile) kabul edece\u011fini belirtir.<\/p>\n\n\n\n<p>2.3. Dosyay\u0131 kaydedin ve d\u00fczenleyiciyi kapat\u0131n.<\/p>\n\n\n\n<p><strong>Ad\u0131m 3: Kullan\u0131c\u0131lar \u0130\u00e7in \u0130kinci Do\u011frulamay\u0131 Ayarlay\u0131n<\/strong><\/p>\n\n\n\n<p>3.1. Kullan\u0131c\u0131 hesab\u0131n\u0131zda iki fakt\u00f6rl\u00fc do\u011frulamay\u0131 etkinle\u015ftirmek i\u00e7in a\u015fa\u011f\u0131daki komutu \u00e7al\u0131\u015ft\u0131r\u0131n:<\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">google-authenticator<\/p>\n\n\n\n<p>Bu komut, Google Authenticator\u2019\u0131 yap\u0131land\u0131rman\u0131z\u0131 sa\u011flayacakt\u0131r.<\/p>\n\n\n\n<p>3.2. Komutu \u00e7al\u0131\u015ft\u0131rd\u0131\u011f\u0131n\u0131zda size baz\u0131 sorular sorulacak. Varsay\u0131lan se\u00e7eneklerle devam etmek i\u00e7in genellikle \u201cy\u201d tu\u015funa basabilirsiniz. \u0130stedi\u011finiz ayarlar\u0131 yapabilirsiniz.<\/p>\n\n\n\n<p>3.3. Komut tamamland\u0131\u011f\u0131nda size bir QR kodu, bir do\u011frulama kodu ve bir acil kurtarma kodu verilecektir. QR kodunu do\u011frulama uygulaman\u0131zda tarayarak sunucuyu ekleyebilirsiniz.<\/p>\n\n\n\n<p><strong>Ad\u0131m 4: SSH Servisini Yeniden Ba\u015flat\u0131n<\/strong><\/p>\n\n\n\n<p>4.1. SSH servisini yeniden ba\u015flatmak i\u00e7in a\u015fa\u011f\u0131daki komutu \u00e7al\u0131\u015ft\u0131r\u0131n:<\/p>\n\n\n\n<p class=\"has-gray-200-background-color has-background\">sudo systemctl restart sshd<\/p>\n\n\n\n<p>Art\u0131k SSH sunucunuzda iki fakt\u00f6rl\u00fc do\u011frulama etkinle\u015ftirilmi\u015ftir. SSH ile sunucuya ba\u011flan\u0131rken kullan\u0131c\u0131 ad\u0131n\u0131z\u0131 ve \u015fifrenizi girdikten sonra, do\u011frulama kodunu girmeniz istenecektir. Bu kod, do\u011frulama uygulaman\u0131zda g\u00fcncellenen her bir oturum i\u00e7in yeniden olu\u015fturulmal\u0131d\u0131r.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"683\" src=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-1024x683.jpg\" alt=\"\" class=\"wp-image-13871\" srcset=\"https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-1024x683.jpg 1024w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-300x200.jpg 300w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-270x180.jpg 270w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-770x515.jpg 770w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-768x512.jpg 768w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir-545x363.jpg 545w, https:\/\/www.natro.com\/blog\/wp-content\/uploads\/2017\/12\/ssh-nedir.jpg 1152w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>\u0130ki fakt\u00f6rl\u00fc do\u011frulama art\u0131k SSH giri\u015flerinde kullan\u0131lacakt\u0131r. Kullan\u0131c\u0131lar, hem genel anahtar do\u011frulamas\u0131n\u0131 hem de ikinci do\u011frulama fakt\u00f6r\u00fcn\u00fc sa\u011flamalar\u0131 gerekecektir.<\/p>\n\n\n\n<p>Ayr\u0131ca, her kullan\u0131c\u0131n\u0131n kendi hesab\u0131nda iki fakt\u00f6rl\u00fc do\u011frulamay\u0131 ayarlamas\u0131 gerekmektedir. Yani, her kullan\u0131c\u0131 bu ad\u0131mlar\u0131 kendi hesaplar\u0131 i\u00e7in takip etmelidir.<\/p>\n\n\n\n<p>Bu ad\u0131mlar, genel olarak SSH \u00fczerinde iki fakt\u00f6rl\u00fc do\u011frulamay\u0131 etkinle\u015ftirmek i\u00e7in izlenecek ad\u0131mlar\u0131 i\u00e7ermektedir. Ancak, i\u015fletim sistemi veya da\u011f\u0131t\u0131m\u0131n\u0131za g\u00f6re baz\u0131 farkl\u0131l\u0131klar olabilir. Bu durumda, ilgili belgelere ve kaynaklara ba\u015fvurman\u0131z \u00f6nerilir. Ayr\u0131ca, i\u015fletim sistemi ve uygulama g\u00fcncellemelerini d\u00fczenli olarak kontrol etmek ve g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 kapatmak da \u00f6nemlidir.<\/p>\n","protected":false},"excerpt":{"rendered":"\u0130ki fakt\u00f6rl\u00fc do\u011frulama (2FA), kullan\u0131c\u0131lar\u0131n SSH (Secure Shell) protokol\u00fc arac\u0131l\u0131\u011f\u0131yla Linux sunucular\u0131na g\u00fcvenli bir \u015fekilde eri\u015fmelerini sa\u011flayan bir&hellip;\n","protected":false},"author":7,"featured_media":34107,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[389,28],"tags":[],"class_list":{"0":"post-34698","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-donanim-yazilim","8":"category-nasil-yapilir"},"_links":{"self":[{"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/posts\/34698","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/comments?post=34698"}],"version-history":[{"count":1,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/posts\/34698\/revisions"}],"predecessor-version":[{"id":34699,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/posts\/34698\/revisions\/34699"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/media\/34107"}],"wp:attachment":[{"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/media?parent=34698"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/categories?post=34698"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.natro.com\/blog\/wp-json\/wp\/v2\/tags?post=34698"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}