[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-security] FW: SSH installed correctly but apparantly not working!



Greg:

When you compiled the SSHd, did you set it up to use PAM? (PasswordAutenticationModule)

if you did, you still have to copy the configuration file, so sshd can talk to the pam, and do the actual authentication.

The following lines should be inside the file "/etc/pam.d/sshd"
#%PAM-1.0
auth       required     /lib/security/pam_unix.so shadow nodelay
auth       required     /lib/security/pam_nologin.so
account    required     /lib/security/pam_unix.so
password   required     /lib/security/pam_cracklib.so
password   required     /lib/security/pam_unix.so shadow nullok use_authtok
session    required     /lib/security/pam_unix.so
session    required     /lib/security/pam_limits.so




At 10:26 AM 5/13/01 +0100, you wrote:
> Hi all,
>
> I've just taken charge of a RaQ4, and my starting point was to install
> OpenSSH, and get rid of telnet.
>
> So, I installed OpenSSL v0.9.6a, and then OpenSSH v2.9p1.
>
> Both installed okay, and the problems only start when I log in... or try
> to!
>
> Basicly, despite providing the correct password (it let's me in over
> telnet with it!), it keeps telling me my password is invalid, and won't
> let me in.
>
> Here's the debug mode output from sshd:
>
> [root admin]# /usr/sbin/sshd -d
> debug1: Seeding random number generator
> debug1: sshd version OpenSSH_2.9p1
> debug1: private host key: #0 type 0 RSA1
> debug1: read PEM private key done: type RSA
> debug1: private host key: #1 type 1 RSA
> debug1: read PEM private key done: type DSA
> debug1: private host key: #2 type 2 DSA
> socket: Invalid argument                                      <<<<<<<<<<<
> this line doesn't look normal to me, any ideas?
> debug1: Bind to port 22 on 0.0.0.0.
> Server listening on 0.0.0.0 port 22.
> Generating 768 bit RSA key.
> RSA key generation complete.
> debug1: Server will not fork when running in debugging mode.
> Connection from 62.136.218.31 port 10080
> debug1: Client protocol version 1.5; client software version PuTTY
> debug1: no match: PuTTY
> debug1: Local version string SSH-1.99-OpenSSH_2.9p1
> debug1: Rhosts Authentication disabled, originating port not trusted.
> debug1: Sent 768 bit server key and 1024 bit host key.
> debug1: Encryption type: 3des
> debug1: Received session key; encryption turned on.
> debug1: Installing crc compensation attack detector.
> debug1: Attempting authentication for admin.
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Failed password for admin from 62.136.218.31 port 10080
> Disconnecting: Too many authentication failures for admin
> debug1: Calling cleanup 0x80659cc(0x0)
> [root admin]#
>
> Any ideas anyone? I'm tearing my hair out over this, and cannot (don't
> want to !!) continue with anything else until I've got a secure connection
> to the RaQ!!
>
> I've since moved back to OpenSSL v0.9.6, and tried OpenSSH v2.3.0p1
> onwards, with no success.
>
> Regards,
>
> Greg Conway.
>
> ==================================
> Greg Conway
> Technical Director
> GML Networking Technologies
> email: <mailto:greg@xxxxxxxxx>
> mobile tel.: +44 (0) 7974 666 967
> mobile fax: +44 (0) 7970 087 935
> internet: <http://www.gmlnt.com/>
> office tel.: +44 (0) 1255 672 103
> office fax: +44 (0) 1255 679 909
> ICQ#: 100219981
> ==================================
>
>

***********************************************************************
This is a confidential communication between sender and addressee. If you are not the intended recipient of this message, please notify the sender and do not read, copy, use or disclose this communication to others. Any opinions or views expressed are those of the individual, and unless otherwise stated, are not those of the company. All attachments and intellectual rights remain the property of GML (NT) Limited.
***********************************************************************

Román Sainz
Gerente de Tecnología
rsainz@xxxxxxxxxxxxxxxxxx
http://www.emtechnologies.net