DevOps

SSH Keygen Command Builder

Build an ssh-keygen command to create an SSH key pair with your chosen algorithm, comment and output file.

Last reviewed by the Radiatus Cloud team

Build an ssh-keygen command for a secure SSH key pair.

Want this automated for your stack?

We build CI/CD, Kubernetes & IaC pipelines that scale.

Talk to an engineer

Build an ssh-keygen command

SSH key pairs provide secure, password-free authentication to servers, and the ssh-keygen tool creates them. This builder assembles the correct command from your choices: the key algorithm, a comment to label the key, and the output file path. It recommends the modern ed25519 algorithm, which is fast and secure with short keys, and falls back to a strong 4096-bit RSA key or ECDSA if you need wider compatibility.

It also shows the follow-up command to copy your new public key to a server.

Secure authentication

Key-based authentication is both more convenient and far more secure than passwords, since the private key never leaves your machine and cannot be guessed like a password. The comment helps you identify which key is which when you have several, and specifying the output file keeps keys organised, especially when you maintain different keys for different services.

Run the generated command in a terminal, protect the private key with a passphrase when prompted, and never share the private key. Only the public key, ending in .pub, goes on servers. All generation happens locally in your browser.

Notes on the output

Because the ssh keygen command builder runs entirely in your browser, you can adjust every option and see the generated output update instantly, with nothing uploaded and no sign-up needed. The result is clean, standard configuration you can paste straight into your project and refine by hand, and because the processing is local, even sensitive values stay private on your own machine.

Related tools

Frequently Asked Questions

Which key type should I choose?

ed25519 is recommended for most uses, being fast and secure with short keys. Use RSA 4096 for older systems that lack ed25519 support.

What is the comment for?

It labels the key, commonly with your email, so you can tell your keys apart when you have several on different machines or services.

Should I set a passphrase?

Yes. A passphrase encrypts the private key on disk, so it stays protected even if the file is copied. ssh-keygen prompts for one.

Which key goes on the server?

Only the public key, the file ending in .pub. The private key stays on your machine and must never be shared.

Privacy & Security

Everything runs in your browser; nothing is uploaded.

Data: None
Client-side-Side
Active
v1.0

How to Use

Choose the key type, comment and file, then copy the command.

Disclaimer: This tool is provided "as is" without warranty of any kind. Results are for educational and utility purposes.