Generate a key
If you do not have a key yet, create one on your own computer. Ed25519 keys are short and widely supported:
ssh-keygen -t ed25519 -C "you@example.com"This writes a private key (keep it secret) and a public key ending in .pub. Only the public key goes into the console.
Add it in the console
- Open the console and go to the SSH keys page.
- Paste the contents of the .pub file and give the key a name you will recognise.
- Save. The console shows the key's fingerprint so you can check it matches your local copy.
Choose a key per instance
When you launch an instance you pick which saved key to install. Removing a key from your account does not change instances that are already running, but you cannot pick it for new ones.
Host keys and the host-key warning
Every instance gets its own hostname, created when it starts and removed when it is deleted. That means your SSH client will not warn about a changed host key because a machine was handed to someone else. If you ever do see a host-key warning for an instance you just launched, stop and contact us before connecting.
Frequently asked questions
Which key types are supported?
Standard OpenSSH public keys: Ed25519, ECDSA, and RSA of at least 2048 bits. The console checks the key when you save it and rejects private keys and anything it cannot parse.
Can I add several keys?
Yes. Save as many as you like and choose one for each instance.