# Failed to set up SSH tunneling for host

**URL:** <https://forums.suse.com/t/failed-to-set-up-ssh-tunneling-for-host/17516>\
**Category:** General\
**Created:** [May 21, 2020, 5:01pm UTC](https://forums.suse.com/t/failed-to-set-up-ssh-tunneling-for-host/17516 "2020-05-21T17:01:43Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![opensource\_engineer](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/opensource_engineer/32/6295_2.png) [@opensource\_engineer](https://forums.suse.com/u/opensource_engineer)\
**Post date:** [May 21, 2020, 5:01pm UTC](https://forums.suse.com/t/failed-to-set-up-ssh-tunneling-for-host/17516/1 "2020-05-21T17:01:43Z")

</div>

i would like to have 3 node RKE cluster. I am using a deployment machine on which i am running the RKE version v1.0.8 and would to create cluster with other 3 nodes.

all nodes are having docker and version centos 7.x including deployment node.  
i have rke as sudl ssh user in all the 3 nodes not in the deployment node.

when i try to run the rke up --config cluster.yml i get the below error:

Failed to set up SSH tunneling for host [xx.xx.xx.xx]: Can’t retrieve Docker Info: error during connect: Get http://%2Fvar%2Frun%2Fdocker.sock/v1.24/info: Unable to access node with address [xx.xx.xx.xx:22] using SSH. Please check if the configured key or specified key file is a valid SSH Private Key. Error: Error configuring SSH: ssh: no key found.

my cluster.yml is as follows:

# please consult the documentation on how to configure custom RKE images.

nodes:

- address: 10.24.15.101  
port: “22”  
internal\_address: “”  
role:
  - controlplane
  - worker
  - etcd  
hostname\_override: rke-node01  
user: rke  
docker\_socket: /var/run/docker.sock  
ssh\_key: “id\_rsa”  
ssh\_key\_path: /home/rke/.ssh/id\_rsa  
ssh\_cert: “”  
ssh\_cert\_path: “”  
labels: {}  
taints: []

- address: 10.24.15.102  
port: “22”  
internal\_address: “”  
role:
  - controlplane
  - worker
  - etcd  
hostname\_override: rke-node02  
user: rke  
docker\_socket: /var/run/docker.sock  
ssh\_key: “id\_rsa”  
ssh\_key\_path: /home/rke/.ssh/id\_rsa  
ssh\_cert: “”  
ssh\_cert\_path: “”  
labels: {}  
taints: []

- address: 10.24.15.103  
port: “22”  
internal\_address: “”  
role:
  - controlplane
  - worker
  - etcd  
hostname\_override: rke-node03  
user: rke  
docker\_socket: /var/run/docker.sock  
ssh\_key: “id\_rsa”  
ssh\_key\_path: /home/rke/.ssh/id\_rsa  
ssh\_cert: “”  
ssh\_cert\_path: “”  
labels: {}  
taints: []  
services:  
etcd:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
external\_urls: []  
ca\_cert: “”  
cert: “”  
key: “”  
path: “”  
uid: 0  
gid: 0  
snapshot: null  
retention: “”  
creation: “”  
backup\_config: null  
kube-api:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
service\_cluster\_ip\_range: 10.43.0.0/16  
service\_node\_port\_range: “”  
pod\_security\_policy: false  
always\_pull\_images: false  
secrets\_encryption\_config: null  
audit\_log: null  
admission\_configuration: null  
event\_rate\_limit: null  
kube-controller:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
cluster\_cidr: 10.42.0.0/16  
service\_cluster\_ip\_range: 10.43.0.0/16  
scheduler:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
kubelet:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
cluster\_domain: cluster.itops  
infra\_container\_image: “”  
cluster\_dns\_server: 10.43.0.10  
fail\_swap\_on: false  
generate\_serving\_certificate: false  
kubeproxy:  
image: “”  
extra\_args: {}  
extra\_binds: []  
extra\_env: []  
network:  
plugin: flannel  
options: {}  
mtu: 0  
node\_selector: {}  
authentication:  
strategy: x509  
sans: []  
webhook: null  
addons: “”  
addons\_include: []  
system\_images:  
etcd: rancher/coreos-etcd:v3.4.3-rancher1  
alpine: rancher/rke-tools:v0.1.56  
nginx\_proxy: rancher/rke-tools:v0.1.56  
cert\_downloader: rancher/rke-tools:v0.1.56  
kubernetes\_services\_sidecar: rancher/rke-tools:v0.1.56  
kubedns: rancher/k8s-dns-kube-dns:1.15.0  
dnsmasq: rancher/k8s-dns-dnsmasq-nanny:1.15.0  
kubedns\_sidecar: rancher/k8s-dns-sidecar:1.15.0  
kubedns\_autoscaler: rancher/cluster-proportional-autoscaler:1.7.1  
coredns: rancher/coredns-coredns:1.6.5  
coredns\_autoscaler: rancher/cluster-proportional-autoscaler:1.7.1  
nodelocal: rancher/k8s-dns-node-cache:1.15.7  
kubernetes: rancher/hyperkube:v1.17.5-rancher1  
flannel: rancher/coreos-flannel:v0.11.0-rancher1  
flannel\_cni: rancher/flannel-cni:v0.3.0-rancher5  
calico\_node: rancher/calico-node:v3.13.0  
calico\_cni: rancher/calico-cni:v3.13.0  
calico\_controllers: rancher/calico-kube-controllers:v3.13.0  
calico\_ctl: rancher/calico-ctl:v2.0.0  
calico\_flexvol: rancher/calico-pod2daemon-flexvol:v3.13.0  
canal\_node: rancher/calico-node:v3.13.0  
canal\_cni: rancher/calico-cni:v3.13.0  
canal\_flannel: rancher/coreos-flannel:v0.11.0  
canal\_flexvol: rancher/calico-pod2daemon-flexvol:v3.13.0  
weave\_node: weaveworks/weave-kube:2.5.2  
weave\_cni: weaveworks/weave-npc:2.5.2  
pod\_infra\_container: rancher/pause:3.1  
ingress: rancher/nginx-ingress-controller:nginx-0.25.1-rancher1  
ingress\_backend: rancher/nginx-ingress-controller-defaultbackend:1.5-rancher1  
metrics\_server: rancher/metrics-server:v0.3.6  
windows\_pod\_infra\_container: rancher/kubelet-pause:v0.1.3  
ssh\_key\_path: ~/.ssh/id\_rsa  
ssh\_cert\_path: “”  
ssh\_agent\_auth: false  
authorization:  
mode: rbac  
options: {}  
ignore\_docker\_version: false  
kubernetes\_version: “”  
private\_registries: []  
ingress:  
provider: “”  
options: {}  
node\_selector: {}  
extra\_args: {}  
dns\_policy: “”  
extra\_envs: []  
extra\_volumes: []  
extra\_volume\_mounts: []  
cluster\_name: “”  
cloud\_provider:  
name: “”  
prefix\_path: “”  
addon\_job\_timeout: 0  
bastion\_host:  
address: “”  
port: “”  
user: “”  
ssh\_key: “”  
ssh\_key\_path: “”  
ssh\_cert: “”  
ssh\_cert\_path: “”  
monitoring:  
provider: “”  
options: {}  
node\_selector: {}  
restore:  
restore: false  
snapshot\_name: “”  
dns: null

---

<div class="post-metadata">

**Author:** ![superseb](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/superseb/32/2424_2.png) [@superseb](https://forums.suse.com/u/superseb)\
**Post date:** [May 26, 2020, 6:03pm UTC](https://forums.suse.com/t/failed-to-set-up-ssh-tunneling-for-host/17516/2 "2020-05-26T18:03:58Z")

</div>

Can you remove this line from the config for each node, it either needs a path to the key or the key inline

```auto
ssh_key: “id_rsa”

```

---

<div class="post-metadata">

**Author:** ![opensource\_engineer](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/opensource_engineer/32/6295_2.png) [@opensource\_engineer](https://forums.suse.com/u/opensource_engineer)\
**Post date:** [May 27, 2020, 8:17am UTC](https://forums.suse.com/t/failed-to-set-up-ssh-tunneling-for-host/17516/3 "2020-05-27T08:17:48Z")

</div>

removed it from the config. it actually worked after i started the ssh-agent and added the private key to the host.
