
{"id":426,"date":"2019-10-24T10:05:28","date_gmt":"2019-10-24T04:05:28","guid":{"rendered":"https:\/\/www.neyduetewa.gov.bt\/?page_id=426"},"modified":"2019-11-04T10:31:43","modified_gmt":"2019-11-04T04:31:43","slug":"knowledgebase","status":"publish","type":"page","link":"https:\/\/www.neyduetewa.gov.bt\/?page_id=426","title":{"rendered":"Knowledgebase"},"content":{"rendered":"<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">GDC Infrastructure<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-461\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-461\"><span><\/span>Government Data Center (GDC) Infrastructure<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-461\"><p style=\"text-align: left;\"><span style=\"font-weight: 400;\">Government Data Center(GDC) infrastructure is housed in Thimphu Tech Park Limited(TTPL).\r\n<\/span><span style=\"font-size: 15px; font-weight: 400;\">It is built on 1000 sq ft block at Thimphu Tech Park Ltd (TTPL). All the required facilities like\r\ndual feed power redundancy, Diesel Generator, Uninterrupted Power Supply (UPS),\r\nredundant connectivities from ISPs (minimum of 10 Mbps each from BT and TashiCell)\r\nand Thimphu Wide Area Network (Government Network) with high bandwidth capacity,\r\nfire suppressants, Network Operation Center (NOC), Media Distribution Center (MDC),\r\nBuilding Management System with surveillance CCTV, Biometric authentication\r\nare installed and operational.<\/span><\/p>\r\n<p style=\"text-align: left;\"><span style=\"font-weight: 400;\">\r\n<\/span><span style=\"font-weight: 400;\">GDC is Tier-2 Data Center which is based on design principles such as reliability, availability, serviceability and scalability. The GDC facility is tested to ensure performance over time without failing.<\/span><\/p>\r\n<p style=\"text-align: left;\"><span style=\"font-size: 15px; font-weight: 400;\">Any agency of RGoB can host their system at GDC free of cost provided that the system is approved by eGIF.<\/span><\/p>\r\n<a style=\"font-size: 15px;\" href=\"https:\/\/drive.google.com\/file\/d\/14CwTpKtREdLl9IUH36Kwk63EjohuBlev\/view?usp=sharing\"><h5>Video about GDC Infrastructure (Accessible only for RGoB)<\/h5><\/a><\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-462\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-462\"><span><\/span>Infrastructure As A Service<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-462\"><p><span style=\"font-weight: 400;\">GDC is based on the model of Infrastructure As A Service where storage, network, compute and server resources are provisioned and managed by GDC. <\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-463\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-463\"><span><\/span>GDC Backup System<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-463\"><p><span style=\"font-weight: 400;\">GDC primary backup system is hosted at TWAN\/GovNet server room located at DITT. GDC also has secondary back up being done on Tape Library.<\/p>\n<p><\/span><span style=\"font-weight: 400;\">System backup policy is dependent on respective system and it\u2019s criticality. Backup policy can be discussed with GDC and implement accordingly.<\/span><\/p>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n\n\n<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">GDC Network Accessibility<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-464\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-464\"><span><\/span>GDC Network Accessibility<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-464\"><p><span style=\"font-weight: 400;\">GDC is facilitated with redundant internet connection with at least 10 Mbps leased line each from BT and TashiCell.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">GDC is also a member of BtIX with 1Gbps fiber connection.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">GDC is also connected with TWAN\/GovNet with 10 Gbps fiber connection.<\/span><\/p>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n\n\n<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">GDC Services<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-466\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-466\"><span><\/span>GDC Space Request<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-466\"><p><span style=\"font-weight: 400;\">An agency can submit server request form from GDC website : <\/span><\/p>\n<h5>https:\/\/www.neyduetewa.gov.bt\/?page_id=93<\/h5>\n<p><span style=\"font-weight: 400;\">At the submission of server request form, GDC team receives email notification. GDC team then evaluates and process it further.\u00a0<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">\u201cneyduetewa\u201d is the translation of data center in national language Dzongkha.<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-467\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-467\"><span><\/span>GDC Staging &#038; Production Environment<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-467\"><p><span style=\"font-weight: 400;\">GDC space allocation will generally be completed <\/span><span style=\"font-weight: 400;\">within 3 days and<\/span><span style=\"font-weight: 400;\"> user credentials will be shared with the agency\u2019s ICT personnel through <\/span><span style=\"font-weight: 400;\">mailvelope(refer \u201cCreating Mailvelope Account for pgp Email Encryption\u201d section)<\/span><span style=\"font-weight: 400;\">. The space provided will be in staging environment.<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">Once staging space is provided, the agency is required to migrate copy of the system to it. GDC Security Operations Center(SOC) team, Bhutan Cyber Incident Response(BtCIRT) team will then scan the system for vulnerabilities and provide advisory of vulnerability fixes if any is found. Only after the GDC SOC team issue the system as clean, the system is processed and migrated to production environment by GDC.<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">An agency and GDC is mandated through APA to migrate their system to production environment within 5 weeks after staging space is provided.<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-468\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-468\"><span><\/span>GDC Ticketing System<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-468\"><p><span style=\"font-weight: 400;\">After a system has been successfully migrated to GDC Production environment, a system owner is required to create a user account in <a href=\"https:\/\/support.neyduetewa.gov.bt\/login.php\">GDC Ticketing System <\/a><\/span><span style=\"font-weight: 400;\">\u00a0to raise any future issues regarding the system.\u00a0<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">When a ticket is raised, notification is automatically sent to GDC Team and GDC Support Team. The raised ticket will be tended as soon as possible and GDC Team will strive to address it within a day.\u00a0<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">Ticket status can also be tracked by an individual.<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-469\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-469\"><span><\/span>GDC VPN Facility<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-469\"><p><span style=\"font-weight: 400;\">VPN connection can be used by an agency to connect to their server located in GDC from internet wherein there is no GovNet connection. To establish a VPN connection, agency need to raise ticket asking for VPN connection. VPN credentials will then be created and shared with the agency.<\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">To establish VPN Connection, system owner needs to install Cisco Anyconnect VPN client on their machine.<br \/>\n-&gt;Visit GDC VPN Server Site <a href=\"https:\/\/secure.neyduetewa.gov.bt\">https:\/\/secure.neyduetewa.gov.bt<\/a><span style=\"font-weight: 400;\"><br \/>\n-&gt; use the provided VPN credentials to log into<br \/>\n-&gt; follow the instructions; download and install the client <\/span><\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\">Once installed, input &#8220;https:\/\/secure.neyduetewa.gov.bt&#8221; to connect\u00a0 to GDC vpn server and then input the provided vpn credentials to establish connection.<\/span><\/p>\n<p>&nbsp;<\/p>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n\n\n<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">GDC Policy<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-488\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-488\"><span><\/span>Ports Policy<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-488\"><p><span style=\"font-weight: 400;\">GDC implements port white listing at network level. Only port TCP-80, TCP-443 and ICMP are allowed in GDC network.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Any other ports if required must be put to GDC with justification through GDC <a href=\"https:\/\/support.neyduetewa.gov.bt\/login.php\"><b>ticketing system<\/b>.<\/a><\/span><\/p>\n<p><span style=\"font-weight: 400;\">Any one requiring access from global network should use GDC VPN facility.<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-489\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-489\"><span><\/span>Highlights from GDC Policy<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-489\"><h3>Responsibilities of the System Owner, GDC Technical Support Team and BtCIRT are as follows:<\/h3>\n<table>\n<tbody>\n<tr>\n<td><\/td>\n<td><span style=\"font-weight: 400;\">Composition<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Responsibilities<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">System Owner<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Concerned agency<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1. Configure, maintain, manage,update, patch application\/databases and operating systems(OS) hosted inGDC.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">2.Ensure\u00a0 OS\/application\u2019s compliance with\u00a0 security requirements as per BtCIRT&#8217;sbaseline requirement<\/span><\/p>\n<p><span style=\"font-weight: 400;\">3. Patch and update application and OS vulnerabilities based on BtCIRT&#8217;s security requirement.\u00a0\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">4. Seek storage, compute and network resources to host application in the GDC. \u00a0 5. Carry out migration of application to GDC.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">6. Consult with GDC and BtCIRT team on security requirements of applications.<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">GDC Technical Support Team<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Technical team of concerned contractor<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1.Configure and set up new virtual platform.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">2.Allocate resources such as memory, storage, processor, network.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">3.Provision and manage\u00a0 IP addressing scheme.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">4.Implement firewall security policy(ies) needed for system management and accessibility.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">6.Patch and Update OS of network devices(firewall, router, switches,storage).<\/span><\/p>\n<p><span style=\"font-weight: 400;\">7.Ensure the hardware contingencies are maintained throughout operation of GDC networks and services.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">8.Monitor availability and utilization of server\/storage\/network resources.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">10.Provide 24\/7 or 9\/5 on-call support, as specified for each supported server or device.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">11.Diagnose and rectify hardware problems.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">12.Configure, maintain and monitor servers such as DNS, Log Server, NTP, NMS and other critical servers required to operate GDCinfrastructure.<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">BtCIRT<\/span><\/td>\n<td><\/td>\n<td><span style=\"font-weight: 400;\">1.Decision on application\u2019s criticality level (basic | medium| CII)<\/span><\/p>\n<p><span style=\"font-weight: 400;\">2.Compliance audit against security requirements (initial,final, yearly) and decision for GO \/ Not GO<\/span><\/p>\n<p><span style=\"font-weight: 400;\">3.Periodic vulnerability scanning according asset criticality<\/span><\/p>\n<p><span style=\"font-weight: 400;\">4.Basic incident detection activities through deployed sensors.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">5.Incident handling activities once incident is detected<\/span><\/p>\n<p><span style=\"font-weight: 400;\">6.Escalation to a System Owner\u2192 PMU \u2192 Management incase of major security compliance issues<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3><a href=\"https:\/\/www.neyduetewa.gov.bt\/?attachment_id=393\">For more details please refer to the document.<\/a><\/h3>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n\n\n<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">Linux Tutorials<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-490\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-490\"><span><\/span>Getting Sudo Privileges<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-490\"><p><span style=\"font-weight: 400;\">$sudo su &#8211;<\/span>\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<span style=\"font-weight: 400;\">\/\/switch to sudo root user<br \/>\n<\/span><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\/\/enter current user password to get root privileges<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-499\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-499\"><span><\/span>Linux Resource Links<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-499\"><p><strong><a href=\"https:\/\/drive.google.com\/open?id=1TLVYivQKo2SSkktI3V6LNQnOttgLCebfBUlcw3TDqnw\">Linux System Induction 2019 Presentation<\/a><br \/>\n<a href=\"https:\/\/drive.google.com\/open?id=1MloDcFhPkj3KswDO0uOHPnJHGeGl69D8zgTd0CPeRTI\">Linux System Induction 2019 Lab Practices<\/a><br \/>\n<a href=\"https:\/\/www.linux.com\/\">Linux.com<\/a><br \/>\n<a href=\"https:\/\/www.redhat.com\/en\">Red Hat<\/a><br \/>\n<a href=\"https:\/\/nsrc.org\/\">NSRC<\/a><\/strong><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-510\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-510\"><span><\/span>Establishing SSH Remote Connection<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-510\"><p><span style=\"font-weight: 400;\">$ssh user_account@ip_address<br \/>\n<\/span><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\/etc\/ssh\/ssh_host.pub<\/span>\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<span style=\"font-weight: 400;\">\/\/file location in the host server where the public key is stored<br \/>\n<\/span><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 ~\/.ssh\/known_hosts\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span> <span style=\"font-weight: 400;\">\/\/file location in local machine where the key is stored<\/span><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-512\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-512\"><span><\/span>Setting Up SSH with Public Private Key<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-512\"><p><span style=\"font-weight: 400;\">(For Linux\/BSD)<\/span><\/p>\n<p><span style=\"font-weight: 400;\">***In your local machine***<br \/>\n$ssh-keygen<\/span>\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\u00a0<span style=\"font-weight: 400;\">\/\/to generate public private key<br \/>\n<\/span><span style=\"font-weight: 400;\">$ssh-copy-id user_account@ip_address<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\u00a0<\/span><span style=\"font-weight: 400;\">\/\/to copy public key to destination host server<br \/>\n<\/span><span style=\"font-weight: 400;\">$ssh-add<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"font-weight: 400;\">\/\/adds passphrase to agent so that you don\u2019t have to enter passphrase every time<br \/>\n<\/span><span style=\"font-size: 15px; font-weight: 400;\">$ssh user_account@ip_address<span style=\"font-weight: 400;\"> \u00a0 \u00a0<\/span><\/span><\/p>\n<p><span style=\"font-size: 15px; font-weight: 400;\"><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 ~\/.ssh\/id_rsa<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"font-weight: 400;\">\/\/file location in local machine where the private key is stored<br \/>\n<\/span><\/span><span style=\"font-size: 15px; font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \/home\/user_account\/.ssh\/id_rsa.pub<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"font-size: 15px; font-weight: 400;\">\/\/file location in host server where public key is stored<\/span><\/p>\n<p><span style=\"font-weight: 400;\">$ssh-add -l<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\u00a0<\/span><span style=\"font-weight: 400;\">\/\/to see what identities (decrypted private keys) your agent has in memory<br \/>\n<\/span><span style=\"font-weight: 400;\">$ssh-add -d<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 <\/span><span style=\"font-weight: 400;\">\/\/to forget all identities<br \/>\n<\/span><span style=\"font-weight: 400;\">$ssh-agent bash<\/span><span style=\"font-size: 15px;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0\u00a0<\/span><span style=\"font-weight: 400;\">\/\/to start a new subshell with ssh-agent if you don&#8217;t have an agent<br \/>\n<\/span><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">For more information <\/span><a href=\"https:\/\/nsrc.org\/workshops\/ws-files\/2011\/sanog17\/exercises\/exercise-ssh-key.html\"><span style=\"font-weight: 400;\">ssh with public\/private key<\/span> <\/a><a href=\"https:\/\/nsrc.org\/workshops\/2017\/renu-nsrc-cns\/networking\/cns\/en\/Labs\/exercise-ssh-agent.htm\"><span style=\"font-weight: 400;\">ssh authentication agent<\/span><\/a><\/p>\n<\/div>\n                  <\/article><article class=\"hrf-entry\" id=\"hrf-entry-567\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-567\"><span><\/span>Configuring SSH to allow specific users<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-567\"><p><span style=\"font-weight: 400;\">$sudo vi \/etc\/ssh\/sshd_config<\/span> <span style=\"font-weight: 400;\">\/\/edit the the configuration file \/etc\/ssh\/sshd_config<br \/>\n<\/span><span style=\"font-weight: 400;\">\u00a0 \u00a0 \u00a0AllowUsers user1 user2 user3\u00a0 \u00a0 \u00a0\u00a0<\/span><span style=\"font-weight: 400;\">\/\/add the line towards the end of the file to allow ssh for only\u00a0<\/span><span style=\"font-size: 15px; font-weight: 400;\">specific users,<br \/>\nsave and exit.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">$sudo systemctl restart sshd<\/span>\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<span style=\"font-weight: 400;\">\/\/restart sshd service to implement changes<\/span><\/p>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n\n\n<div class=\"hrf-faq-list\"><h2 class=\"frq-main-title\">Other Resources<\/h2><article class=\"hrf-entry\" id=\"hrf-entry-492\">\n                      <h2 class=\"hrf-title close-faq\" data-content-id=\"hrf-content-492\"><span><\/span>Creating Mailvelope Account for pgp Email Encryption<\/h2>\n                     <div class=\"hrf-content\" id=\"hrf-content-492\"><p><span style=\"font-weight: 400;\">Manual for mailvelope can be found in the link : <\/span><a href=\"https:\/\/www.mailvelope.com\/en\/help\"><span style=\"font-weight: 400;\"><\/p>\n<h5>https:\/\/www.mailvelope.com\/en\/help<\/h5>\n<p><\/span><\/a><\/p>\n<\/div>\n                  <\/article><article style = \"display:block;text-align:right; font-size:11px\">Powered by <a href=\"https:\/\/websitebuilderguide.com\/wp-plugins\/html5-responsive-faq-plugin-for-wordpress\/\" target=\"_blank\">HTML5 Responsive FAQ<\/a><\/article><\/div><!-- HRF v 2.8.4 -->\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":2,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":[],"_links":{"self":[{"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/pages\/426"}],"collection":[{"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=426"}],"version-history":[{"count":21,"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/pages\/426\/revisions"}],"predecessor-version":[{"id":495,"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=\/wp\/v2\/pages\/426\/revisions\/495"}],"wp:attachment":[{"href":"https:\/\/www.neyduetewa.gov.bt\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=426"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}