Re: need rhosts rsa help

From: Darren Tucker (dtucker_at_dodgy.net.au)
Date: 11/30/04


Date: 30 Nov 2004 09:32:47 GMT

In article <ae8e7ba8.0411290749.3b1552b7@posting.google.com>,
David Karnowski <dkarnows@yahoo.com> wrote:
>I'm having problems getting RhostsRSAAuthentication working on OpenSSH
>3.9p1. It appears from the client log that it's not even attempting
>it.

Since you're using SSHv1 you need to make the "ssh" binary setuid root
so it can load the v1 host private keys

If you use SSHv2 then ssh can use the ssh-keysign suid helper instead
(although you must enable it in the global ssh_config file).

-- 
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4  37C9 C982 80C7 8FF4 FA69
    Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.


Relevant Pages

  • Re: no publickey auth with OpenSSH_3.7.1p2 and HPUX11i
    ... but the same error: ssh not use the publickeys and prompt for password :-( ... With the same environment (HPUX11i, OpenSSL 0.9.7x, HP C Compiler, OpenSSH ... > Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: password check aix
    ... >we're using AIX on RS6000 and openssh. ... >ssh doesn`t check if the password is expired! ... this is expected to be addressed in the next release of OpenSSH ... Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: OpenSSH on HP-UX 10.20
    ... > Can someone tell me which SSH release I could use and any other hints? ... OpenSSH 3.8p1 has been reported to work on 10.20, ... Good judgement comes with experience. ...
    (SSH)
  • Re: Permission denied (publickey,keyboard-interactive).
    ... >output of SSH. ... authentication attempts were denied) will be on the server side. ... Note that OpenSSH 3.4p1 has a potential security problem, ... Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: two SSH compatibility scenarios: can it work?
    ... We are required to use SSH to log into the Engineering lab machines. ... > server software displays this header upon telnet connection to port 22. ... I still use Windows on my notebook for application compatibility. ... > running OpenSSH 3.4p1. ...
    (comp.security.ssh)