Re: ssh problems

From: rich lott (rl3_at_shinyblue.net)
Date: 09/23/04

  • Next message: David Dorward: "Re: Via CLE266 Graphics"
    To: debian-user@lists.debian.org
    Date: Thu, 23 Sep 2004 13:18:34 +0100
    
    

    I lost the reply to this originally, so this may appear as a new posting
    (soz!)

    I'd written:

    I have a Woody box running ssh. I can remotely access it no problems using
    linux, but try from WinSCP and I can only log in as root! For other users it
    won't authenticate the password.

    Any ideas?

    And I'd been advised to look at the logs (which are below). Can anyone see
    anything that's wrong?

    thanks
    rich

    . --------------------------------------------------------------------------
    . WinSCP Version 3.5.0 (Build 204)
    . Login time: 23 September 2004 10:13:44
    . --------------------------------------------------------------------------
    . Session name: rich@123.128.195.147
    . Host name: 123.128.195.147 (Port: 23922)
    . User name: rich (Password: Yes, Key file: No)
    . Transfer Protocol: SCP
    . SSH protocol version: 2; Compression: Yes
    . Agent forwarding: No; TIS/CryptoCard: No; KI: No
    . Ciphers: aes,blowfish,3des,WARN,des; Ssh2DES: No
    . Ping type: -, Ping interval: 30 sec; Timeout: 15 sec
    . SSH Bugs: -,-,-,-,-,-,-,-,
    . Proxy: none
    . Return code variable: Autodetect; Lookup user groups: Yes
    . Shell: default, EOL: 0
    . Local directory: default, Remote directory: /home/rich, Update: Yes, Cache:
    Yes
    . Cache directory changes: Yes, Permanent: Yes
    . Clear aliases: Yes, Unset nat.vars: Yes, Resolve symlinks: Yes
    . Alias LS: No, Ign LS warn: Yes, Scp1 Comp: No
    . --------------------------------------------------------------------------
    . Looking up host "123.128.195.147"
    . Connecting to 123.128.195.147 port 23922
    . Server version: SSH-2.0-OpenSSH_3.4p1 Debian 1:3.4p1-1.woody.3
    . We claim version: SSH-2.0-WinSCP-release-3.5
    . Using SSH protocol version 2
    . Doing Diffie-Hellman group exchange
    . Doing Diffie-Hellman key exchange
    . Host key fingerprint is:
    . ssh-rsa 1024 cf:07:e5:20:42:d4:ae:62:6c:f8:5e:75:4d:55:94:4f
    . Initialised AES-256 client->server encryption
    . Initialised AES-256 server->client encryption
    . Initialised zlib (RFC1950) compression
    . Initialised zlib (RFC1950) decompression
    ! Using username "rich".
    . Session password prompt (rich@123.128.195.147's password: )
    . Using stored password.
    . Sent password
    ! Access denied
    . Access denied
    . Session password prompt (rich@123.128.195.147's password: )
    . Asking user for password.
    . Sent password
    ! Access denied
    . Access denied
    . Session password prompt (rich@123.128.195.147's password: )
    . Asking user for password.
    . Unable to authenticate
    . Attempt to close connection due to fatal exception:
    * Unable to authenticate
    . Closing connection.
    * (ESshFatal) Authentication failed.
    * Authentication log (see session log for details):
    * Using username "rich".
    * Access denied
    * Access denied
    *
    * Unable to authenticate

    -- 
    To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org 
    with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
    

  • Next message: David Dorward: "Re: Via CLE266 Graphics"

    Relevant Pages

    • Re: Windows GSSAPI ssh connection via cross-realm authentication problems
      ... I think you misunderstand the role of Kerberos here. ... If the SSH service is in realm ... The non-Windows KDC needs to trust any user ... kdcadmin user's home directory and that one can authenticate just fine. ...
      (comp.protocols.kerberos)
    • Re: SSH authenticate root and nonroot user
      ... > I would like to configure ssh for root only authenticate with public key ... > and nonroot user authenticate with user and password. ... Stuart Sears RHCE/RHCX ...
      (RedHat)
    • Re: AIX AUTHENTICATION VIA SSH
      ... We were using the AUTH1 and AUTH2 parms to do secondary authentication ... for telnet and I tried to find a way to do it through ssh. ... called through the authenticate function, which is what ssh uses to ...
      (comp.unix.aix)
    • Active Directory LDAP SSH
      ... I've configured a Microsoft Active Directory with LDAP and Kerberos, and some Linux clients who authenticate to it. ... I'm able to get some tickets for the users who are in the Active Directory, but SSH behaves a bit strange. ...
      (comp.protocols.kerberos)