Skip to content

SSH Config Generator

Generate ~/.ssh/config Host blocks with ProxyJump, local, remote and dynamic port forwarding, identity files, presets and security warnings.

SSH Config Generator

Presets

Global defaults (Host *)

Hosts

Host configuration

Port forwarding

SSH command

ssh -i ~/.ssh/id_ed25519 my-server

SSH config preview

# Global defaults
Host *
    ServerAliveInterval 60
    ServerAliveCountMax 3
    StrictHostKeyChecking ask

Host my-server
    HostName 192.168.1.100
    User admin
    IdentityFile ~/.ssh/id_ed25519

Updated . Provided as is. Check the output before you rely on it in production.

How to use SSH Config Generator

  1. 1

    Add SSH hosts

    Use Add Host and enter an alias, HostName, User and Port, or start from a preset. Each host becomes its own Host block.

  2. 2

    Set identity and connection options

    Set an IdentityFile per host or a default for all hosts, plus options such as ForwardAgent, Compression, ServerAliveInterval and StrictHostKeyChecking.

  3. 3

    Route through a jump host

    For machines behind a bastion, set ProxyJump to the intermediate host.

  4. 4

    Add port forwarding

    Add local, remote or dynamic (SOCKS) forwards for tunnels.

  5. 5

    Copy or download

    Copy the config into ~/.ssh/config or download it. The SSH Command panel shows the command to test each host, and security warnings flag risky settings.

Questions and answers

Where does the SSH config file go?
Save as ~/.ssh/config on macOS/Linux or C:\Users\{name}\.ssh\config on Windows. SSH reads this file automatically when you connect.
What is ProxyJump?
ProxyJump (ssh -J) reaches a target host through an intermediate bastion or jump host in one step, so you never log in to the bastion by hand. Set a jump host alias on any entry here and the generator writes the ProxyJump directive plus the equivalent ssh command.
Can I set up port forwarding?
Yes, configure Local (-L for accessing remote services locally), Remote (-R for exposing local services remotely), and Dynamic (-D for SOCKS proxy) port forwarding.
Can I import my existing SSH config?
No. The generator builds a config from its form and presets and does not parse an existing file. Recreate your hosts in the form, or copy the generated Host blocks into your current ~/.ssh/config.
Is this tool secure?
Your SSH config is generated entirely in your browser. No data is sent to any server. Important: never paste private keys into any online tool — this tool only handles config files.
For AI agents: how to call this tool

Machine-readable contract, endpoints and examples. Humans can ignore this section.

Best Path For Builders

Browser workflow

Runs instantly in the browser with private local processing and copy/export-ready output.

Browser Workflow

This tool is optimized for instant in-browser execution with local data handling. Run it here and copy/export the output directly.

/ssh-config-generator/

For automation planning, fetch the canonical contract at /api/tool/ssh-config-generator.json.