SSH Key Pair Generator

Create RSA or ECDSA SSH keys in OpenSSH format using your browser's own crypto engine - nothing is transmitted, logged, or stored.

Pick a key type and press Generate - keys are created on your device only.

What is an SSH key pair?

An SSH key pair is two mathematically linked keys used to log in to servers without passwords. The private key stays on your computer and must never be shared; the public key goes into the ~/.ssh/authorized_keys file of every server you want to access. When you connect, the server challenges your machine to prove it holds the private key - no password ever crosses the network.

How generation works here

This tool uses the Web Crypto API built into your browser - the same cryptographic primitives OpenSSH itself relies on. The key material is created by your operating system's random number generator and never leaves this page: there is no upload endpoint, no analytics, nothing. You can even disconnect from the internet after loading the page and generation still works.

Choosing a key type

RSA 2048 remains the safest choice for older servers and shared hosts in Nepal that run legacy OpenSSH versions. RSA 4096 adds margin against future attacks at the cost of slower handshakes. ECDSA P-256 produces tiny, fast keys and is ideal for modern servers - though it needs a good random generator, which your browser has.

Using your new keys

Save the private key to ~/.ssh/id_rsa (or id_ecdsa), then run chmod 600 on it so only you can read it - SSH refuses world-readable keys. Append the public key line to ~/.ssh/authorized_keys on your server, or simply run ssh-copy-id -i ~/.ssh/id_rsa.pub user@your-server. Test with ssh user@your-server before disabling password login.

Protecting the private key

Whoever holds your private key owns every server listed in its authorized_keys files. Store it only on machines you control, never email or chat it, and add a passphrase with ssh-keygen -p -f ~/.ssh/id_rsa so a stolen file alone is useless. If a laptop is lost or a key leaks, remove its public key from authorized_keys immediately and generate a replacement here.

Verifying the fingerprint

The SHA256 fingerprint shown after generation matches what ssh-keygen -lf reports for the saved public key. Some hosting providers ask for the fingerprint instead of the full key when authorising access - copy it straight from here.

100%

Free, always

No

Sign-up needed

Unlimited

Uses

Private

Runs in browser

Offline

Works without net

Made for SSH Key Generator in Nepal

Developers and sysadmins creating SSH key pairs without OpenSSH installed.

DevOps engineers

Secure cloud servers from Kathmandu.

CS students

Learn Linux admin with real key pairs.

Freelancers

Access client machines over SSH safely.

Sysadmins

Onboard new servers with fresh keys.

Startups

Set up CI/CD deploy keys offline.

Researchers

Reach university compute clusters.

What is an SSH key generator, and how does this free Nepal tool work?

An SSH key generator creates a public and private key pair used to log into servers securely. Scolar’s tool runs in your browser: pick a type and bit length, generate, and download the keys. No sign-up, no watermark, nothing uploaded.

Why it is free, with no sign-up and unlimited use

Key generation uses the browser’s crypto on your device, so private keys never leave your machine and no account is needed. That keeps it 100% free with unlimited keys and no watermark.

How to use this tool, step by step

  • Pick the key type and bit length you need.
  • Generate the public and private key pair on your device.
  • Download or copy the keys; the private key stays local.

SSH keys in Nepal

DevOps engineers in Kathmandu securing cloud servers, students learning Linux administration, and freelancers accessing client machines all need SSH keys. Generating them offline keeps the private key on your own device.

“A Nepali sysadmin should not install OpenSSH just to get an SSH key pair. Generate, download — free.”

SSH keys made free in Nepal

I generate deploy keys here — free, no OpenSSH needed on my laptop.
PN Prakash Neupane DevOps engineer
Learned SSH keys hands-on for my lab. Free and private.
SR Sneha Rai CS student
Client server access keys made locally. No cost, no upload.
TB Tulsi Bharati Freelancer

How it works

1

Choose RSA 2048, RSA 4096 or ECDSA P-256 and set a comment such as your email.

2

Press Generate - your browser creates both keys locally using its crypto engine.

3

Download the private key to ~/.ssh, chmod 600 it, and add the .pub key to your server.

Why use this tool?

  • Keys are produced by the same Web Crypto primitives OpenSSH uses - fully offline capable.

  • A SHA256 fingerprint is shown so you can verify the key with ssh-keygen -lf.

  • The private key never leaves this page - there is no upload code path at all.

Frequently asked questions

Are the generated keys sent to a server?

No. Keys are generated locally with the browser Web Crypto API and never leave your device. You can go offline after loading the page and it still works.

Which key type should I choose?

RSA 2048 for maximum compatibility with older servers, RSA 4096 for extra strength, or ECDSA P-256 for short, fast keys on modern systems.

Where do I put the public key?

Append it to ~/.ssh/authorized_keys on the server for the user you log in as, or run ssh-copy-id -i yourkey.pub user@server once.

Why does SSH say my permissions are too open?

Private keys must be readable only by you. Run chmod 600 ~/.ssh/id_rsa to fix it.

Can I add a passphrase later?

Yes. Run ssh-keygen -p -f ~/.ssh/id_rsa and it will encrypt the existing private key with a passphrase of your choice.