Re: PuTTY to OpenSSH, slow auth



>>>>> "JB" == Jeff B <jbeardNo-Spam1185@xxxxxxxxxxxx> writes:

JB> Ross Crawford wrote:
>> Ross Crawford wrote: .... so the reverse DNS lookup was timing
>> out. So I added "UseDNS no" to sshd-config, and no more waiting!
>>

JB> it will also try both protocols(1,2) and the RSA/DSA and host
JB> authentications

I'm sorry, but none of this makes any sense. Neither the choice of SSH
protocol version nor the server key type can be "re-tried" in the course
of a single SSH connection; if either one doesn't work out for whatever
reason (e.g. the client has two keys for a host, and the one chosen
doesn't verify), the connection must be aborted. The only way what you're
describing could happen is if the client software made multiple SSH
connections in order to try these different parameters -- and PuTTY
doesn't appear to do that; I just tried it.

JB> so config the target host to use specifically that technique you
JB> used to create your pass-phrase and it will carve of some more
JB> time.

Passphrases have to do with user keys, which affect user authentication.
Above you mentioned issues with server authentication and protocol
version. Even if the issues you mentioned were valid, how could this
affect them in any way?

--
Richard Silverman
res@xxxxxxxx

.



Relevant Pages

  • Re: unsuccessful hacking attempt at my machine
    ... Because when they send a connection request packet to your IP port 22 ... It would be imposible for them to actually try to login in via ssh without ... keys from them. ... Or just change your ssh port. ...
    (comp.os.linux.security)
  • SSH / NFS Problem
    ... I have an very specific problem using ssh on our company network. ... We have 2 Computers, SUSE Linux7.3, and both are usig NFS. ... I am trying to make connection via SSH, but first I have to set up ... And when I setup it on computer B, it overwrites the old keys from ...
    (comp.security.ssh)
  • Re: SSH trouble (Was: Has Linux Peaked ?)
    ... don't know which ssh out Administrators supplied us with but it ... scp1 compatibility mode is not supported. ... Connection to ... Or I am asked for passwords even when keys are installed: ...
    (comp.os.vms)
  • Re: Recommendations for secure terminal emulation
    ... (Didn't work with the OSU SSH, ... and with the fullsize Mac keyboard has keys pretty much in the place ... I do 99% of my connection to work via DECnet Phase V over IP from an Alpha ...
    (comp.os.vms)