Re: problem with HostbasedAuthentication

Sharad <[email protected]> Fri, 29 Apr 2011 12:31:01 +0530 (IST)
Newsgroups gmane.network.openssh.general
Message-ID <[email protected]>
Can you run debug on server as well using sshd -d. More -d's mean more debu=
g information (you can use at the max 3 d's) :D=0A=0ARegards,=0ASharad=0A--=
- On Fri, 29/4/11, Mahmood Naderan <[email protected]> wrote:=0A=0A> Fro=
m: Mahmood Naderan <[email protected]>=0A> Subject: Re: problem with Hos=
tbasedAuthentication=0A> To: "Sharad" <[email protected]>=0A> Cc: "secur=
[email protected]" <[email protected]>=0A> Date: Friday,=
 29 April, 2011, 12:23 PM=0A> The same thing happens with IP=0A> address=0A=
> =A0=0A> =A0=0A> mahmood@server:~$ ssh -vvv 192.168.1.3=0A> OpenSSH_5.3p1 =
Debian-3ubuntu4, OpenSSL 0.9.8k 25 Mar 2009=0A> debug1: Reading configurati=
on data /etc/ssh/ssh_config=0A> debug1: Applying options for *=0A> debug2: =
ssh_connect: needpriv 0=0A> debug1: Connecting to 192.168.1.3 [192.168.1.3]=
 port 22.=0A> debug1: Connection established.=0A> debug1: identity file /ho=
me/mahmood/.ssh/identity type -1=0A> debug1: identity file /home/mahmood/.s=
sh/id_rsa type -1=0A> debug1: identity file /home/mahmood/.ssh/id_dsa type =
-1=0A> debug1: Remote protocol version 2.0, remote software=0A> version Ope=
nSSH_5.3p1 Debian-3ubuntu6=0A> debug1: match: OpenSSH_5.3p1 Debian-3ubuntu6=
 pat OpenSSH*=0A> debug1: Enabling compatibility mode for protocol 2.0=0A> =
debug1: Local version string SSH-2.0-OpenSSH_5.3p1=0A> Debian-3ubuntu4=0A> =
debug2: fd 3 setting O_NONBLOCK=0A> debug1: SSH2_MSG_KEXINIT sent=0A> debug=
3: Wrote 792 bytes for a total of 831=0A> debug1: SSH2_MSG_KEXINIT received=
=0A> debug2: kex_parse_kexinit:=0A> diffie-hellman-group-exchange-sha256,di=
ffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman=
-group1-sha1=0A> debug2: kex_parse_kexinit: ssh-rsa,ssh-dss=0A> debug2: kex=
_parse_kexinit:=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,=
aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,=
[email protected]=0A> debug2: kex_parse_kexinit:=0A> aes128-ctr,a=
es192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc=
,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,[email protected]=0A> =
debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,[email protected],hmac-ripe=
md160,[email protected],hmac-sha1-96,hmac-md5-96=0A> debug2: kex_p=
arse_kexinit: hmac-md5,hmac-sha1,[email protected],hmac-ripemd160,hmac-ri=
[email protected],hmac-sha1-96,hmac-md5-96=0A> debug2: kex_parse_kexinit:=
 none,[email protected],zlib=0A> debug2: kex_parse_kexinit: none,zlib@openss=
h.com,zlib=0A> debug2: kex_parse_kexinit:=0A> debug2: kex_parse_kexinit:=0A=
> debug2: kex_parse_kexinit: first_kex_follows 0=0A> debug2: kex_parse_kexi=
nit: reserved 0=0A> debug2: kex_parse_kexinit:=0A> diffie-hellman-group-exc=
hange-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1=
,diffie-hellman-group1-sha1=0A> debug2: kex_parse_kexinit: ssh-rsa,ssh-dss=
=0A> debug2: kex_parse_kexinit:=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfou=
r256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes=
256-cbc,arcfour,[email protected]=0A> debug2: kex_parse_kexinit:=
=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des=
-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,rijndael-cbc@ly=
sator.liu.se=0A> debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,umac-64@open=
ssh.com,hmac-ripemd160,[email protected],hmac-sha1-96,hmac-md5-96=
=0A> debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,[email protected],hmac=
-ripemd160,[email protected],hmac-sha1-96,hmac-md5-96=0A> debug2: =
kex_parse_kexinit: none,[email protected]=0A> debug2: kex_parse_kexinit: non=
e,[email protected]=0A> debug2: kex_parse_kexinit:=0A> debug2: kex_parse_kex=
init:=0A> debug2: kex_parse_kexinit: first_kex_follows 0=0A> debug2: kex_pa=
rse_kexinit: reserved 0=0A> debug2: mac_setup: found hmac-md5=0A> debug1: k=
ex: server->client aes128-ctr hmac-md5 none=0A> debug2: mac_setup: found hm=
ac-md5=0A> debug1: kex: client->server aes128-ctr hmac-md5 none=0A> debug1:=
 SSH2_MSG_KEX_DH_GEX_REQUEST(1024<1024<8192)=0A> sent=0A> debug1: expecting=
 SSH2_MSG_KEX_DH_GEX_GROUP=0A> debug3: Wrote 24 bytes for a total of 855=0A=
> debug2: dh_gen_key: priv key bits set: 129/256=0A> debug2: bits set: 505/=
1024=0A> debug1: SSH2_MSG_KEX_DH_GEX_INIT sent=0A> debug1: expecting SSH2_M=
SG_KEX_DH_GEX_REPLY=0A> debug3: Wrote 144 bytes for a total of 999=0A> debu=
g3: check_host_in_hostfile: filename=0A> /home/mahmood/.ssh/known_hosts=0A>=
 debug3: check_host_in_hostfile: match line 1=0A> debug1: Host '192.168.1.3=
' is known and matches the RSA=0A> host key.=0A> debug1: Found key in /home=
/mahmood/.ssh/known_hosts:1=0A> debug2: bits set: 517/1024=0A> debug1: ssh_=
rsa_verify: signature correct=0A> debug2: kex_derive_keys=0A> debug2: set_n=
ewkeys: mode 1=0A> debug1: SSH2_MSG_NEWKEYS sent=0A> debug1: expecting SSH2=
_MSG_NEWKEYS=0A> debug3: Wrote 16 bytes for a total of 1015=0A> debug2: set=
_newkeys: mode 0=0A> debug1: SSH2_MSG_NEWKEYS received=0A> debug1: SSH2_MSG=
_SERVICE_REQUEST sent=0A> debug3: Wrote 48 bytes for a total of 1063=0A> de=
bug2: service_accept: ssh-userauth=0A> debug1: SSH2_MSG_SERVICE_ACCEPT rece=
ived=0A> debug2: key: /home/mahmood/.ssh/identity ((nil))=0A> debug2: key: =
/home/mahmood/.ssh/id_rsa ((nil))=0A> debug2: key: /home/mahmood/.ssh/id_ds=
a ((nil))=0A> debug3: Wrote 64 bytes for a total of 1127=0A> debug1: Authen=
tications that can continue:=0A> publickey,password,hostbased=0A> debug3: s=
tart over, passed a different list=0A> publickey,password,hostbased=0A> deb=
ug3: preferred=0A> gssapi-keyex,gssapi-with-mic,gssapi,hostbased,publickey,=
keyboard-interactive,password=0A> debug3: authmethod_lookup hostbased=0A> d=
ebug3: remaining preferred:=0A> publickey,keyboard-interactive,password=0A>=
 debug3: authmethod_is_enabled hostbased=0A> debug1: Next authentication me=
thod: hostbased=0A> get_socket_address: getnameinfo 8 failed: Name or servi=
ce=0A> not known=0A> debug2: userauth_hostbased: chost server.=0A> debug2: =
ssh_keysign called=0A> debug3: ssh_msg_send: type 2=0A> debug3: ssh_msg_rec=
v entering=0A> debug1: permanently_drop_suid: 1000=0A> get_socket_address: =
getnameinfo 8 failed: Name or service=0A> not known=0A> cannot get sockname=
 for fd=0A> ssh_keysign: no reply=0A> key_sign failed=0A> debug2: we did no=
t send a packet, disable method=0A> debug3: authmethod_lookup publickey=0A>=
 debug3: remaining preferred: keyboard-interactive,password=0A> debug3: aut=
hmethod_is_enabled publickey=0A> debug1: Next authentication method: public=
key=0A> debug1: Trying private key: /home/mahmood/.ssh/identity=0A> debug3:=
 no such identity: /home/mahmood/.ssh/identity=0A> debug1: Trying private k=
ey: /home/mahmood/.ssh/id_rsa=0A> debug3: no such identity: /home/mahmood/.=
ssh/id_rsa=0A> debug1: Trying private key: /home/mahmood/.ssh/id_dsa=0A> de=
bug3: no such identity: /home/mahmood/.ssh/id_dsa=0A> debug2: we did not se=
nd a packet, disable method=0A> debug3: authmethod_lookup password=0A> debu=
g3: remaining preferred: ,password=0A> debug3: authmethod_is_enabled passwo=
rd=0A> debug1: Next authentication method: password=0A> [email protected]=
's password:=0A> =0A> =0A> // Naderan *Mahmood;=0A> =0A> =0A> ----- Origina=
l Message -----=0A> From: Sharad <[email protected]>=0A> To: Mahmood Nad=
eran <[email protected]>=0A> Cc: "[email protected]"=0A> <se=
[email protected]>=0A> Sent: Friday, April 29, 2011 11:19 AM=0A> =
Subject: Re: problem with HostbasedAuthentication=0A> =0A> Hi Mahmood,=0A> =
=0A> This line looks out of place. Check that host name is=0A> getting reso=
lved:=0A> =0A> get_socket_address: getnameinfo 8 failed: Name or service=0A=
> not known=0A> =0A> I am sure you would have performed the same steps on b=
oth=0A> hosts. Try establishing connection with IP Address instead=0A> of h=
ostname.=0A> =0A> Regards,=0A> Sharad=0A> --- On Thu, 28/4/11, Mahmood Nade=
ran <[email protected]>=0A> wrote:=0A> =0A> > From: Mahmood Naderan <nt_=
[email protected]>=0A> > Subject: Re: problem with HostbasedAuthentication=
=0A> > To: "Sharad" <[email protected]>=0A> > Cc: "secureshell@securityf=
ocus.com"=0A> <[email protected]>=0A> > Date: Thursday, 28 Apri=
l, 2011, 11:12 PM=0A> > Dear Sharad,=0A> > I am now trying to setup a hostb=
ased ssh from server=0A> to=0A> > client (previously client->server worked =
fine based=0A> on=0A> > your help). I want it to be bidirectional.=0A> > =
=A0=0A> > I did the same thing in reverse (now the client=0A> becomes=0A> >=
 server and the server becoms client). However this is=0A> what I=0A> > get=
 while trying to ssh from server to client:=0A> > =A0=0A> > =A0=0A> > debug=
3: Wrote 48 bytes for a total of 1063=0A> > debug2: service_accept: ssh-use=
rauth=0A> > debug1: SSH2_MSG_SERVICE_ACCEPT received=0A> > debug2: key: /ho=
me/mahmood/.ssh/identity ((nil))=0A> > debug2: key: /home/mahmood/.ssh/id_r=
sa ((nil))=0A> > debug2: key: /home/mahmood/.ssh/id_dsa ((nil))=0A> > debug=
3: Wrote 64 bytes for a total of 1127=0A> > debug1: Authentications that ca=
n continue:=0A> > publickey,password,hostbased=0A> > debug3: start over, pa=
ssed a different list=0A> > publickey,password,hostbased=0A> > debug3: pref=
erred=0A> >=0A> gssapi-keyex,gssapi-with-mic,gssapi,hostbased,publickey,key=
board-interactive,password=0A> > debug3: authmethod_lookup hostbased=0A> > =
debug3: remaining preferred:=0A> > publickey,keyboard-interactive,password=
=0A> > debug3: authmethod_is_enabled hostbased=0A> > debug1: Next authentic=
ation method: hostbased=0A> > get_socket_address: getnameinfo 8 failed: Nam=
e or=0A> service=0A> > not known=0A> > debug2: userauth_hostbased: chost se=
rver.=0A> > debug2: ssh_keysign called=0A> > debug3: ssh_msg_send: type 2=
=0A> > debug3: ssh_msg_recv entering=0A> > debug1: permanently_drop_suid: 1=
000=0A> > get_socket_address: getnameinfo 8 failed: Name or=0A> service=0A>=
 > not known=0A> > cannot get sockname for fd=0A> > ssh_keysign: no reply=
=0A> > key_sign failed=0A> > debug2: we did not send a packet, disable meth=
od=0A> > debug3: authmethod_lookup publickey=0A> > debug3: remaining prefer=
red:=0A> keyboard-interactive,password=0A> > debug3: authmethod_is_enabled =
publickey=0A> > debug1: Next authentication method: publickey=0A> > debug1:=
 Trying private key:=0A> /home/mahmood/.ssh/identity=0A> > debug3: no such =
identity: /home/mahmood/.ssh/identity=0A> > debug1: Trying private key: /ho=
me/mahmood/.ssh/id_rsa=0A> > debug3: no such identity: /home/mahmood/.ssh/i=
d_rsa=0A> > debug1: Trying private key: /home/mahmood/.ssh/id_dsa=0A> > deb=
ug3: no such identity: /home/mahmood/.ssh/id_dsa=0A> > debug2: we did not s=
end a packet, disable method=0A> > debug3: authmethod_lookup password=0A> >=
 debug3: remaining preferred: ,password=0A> > debug3: authmethod_is_enabled=
 password=0A> > debug1: Next authentication method: password=0A> > mahmood@=
192.168.1.3's password:=0A> > =0A> > =A0=0A> > What is your suggestion?=0A>=
 > =0A> > // Naderan *Mahmood;=0A> > =0A> > =0A> > ----- Original Message -=
----=0A> > From: Sharad <[email protected]>=0A> > To: Mahmood Naderan <n=
[email protected]>=0A> > Cc: "[email protected]"=0A> > <secur=
[email protected]>=0A> > Sent: Thursday, April 28, 2011 5:20 PM=0A> =
> Subject: Re: problem with HostbasedAuthentication=0A> > =0A> > Mahmood, =
=0A> > =0A> > The files are /home/username/.ssh/known_hosts on both=0A> > s=
erver and client.=0A> > =0A> > By FQDN, I meant host's fully qualified doma=
in name. =0A> > =0A> > Following is the example:=0A> > =0A> > Assuming both=
 client and server are linux hosts:=0A> > =0A> > Server IP: 192.168.1.1=0A>=
 > Client IP: 192.168.1.101=0A> > =0A> > Server Name: lnx_srvr_1.domain.com=
=0A> > Client Name: lnx_clnt_101.domain.com=0A> > =0A> > User name on each =
host is mahmood.=0A> > =0A> > Following would be the entries in .shosts on=
=0A> lnx_srvr_1=0A> > =0A> > =0A> > lnx_srvr_1:/home/mahmood $ cat .shosts=
=0A> > =0A> > lnx_clnt_101.domain.com mahmood=0A> > 192.168.1.101 mahmood=
=0A> > lnx_clnt_101 mahmood=0A> > =0A> > Following should exist in=0A> /hom=
e/mahmood/.ssh/known_hosts=0A> > file on the server side:=0A> > 192.168.1.1=
01,lnx_clnt_101,lnx_clnt_101.domain.com=A0=0A> > ssh-rsa AAAAB3Nz...=0A> > =
=0A> > Following should also exist in=0A> > /home/mahmood/.ssh/known_hosts =
file on the client=0A> side:=0A> > 192.168.1.1,lnx_srvr_1,lnx_srvr_1.domain=
.com=A0=0A> ssh-rsa=0A> > AAAAB3Nz...=0A> > =0A> > Ensure that .ssh directo=
ry on both client and server=0A> are=0A> > rwx for owner only and group/res=
t of world is 000.=0A> > =0A> > Hope this helps! Good Luck! :)=0A> > =0A> >=
 Regards,=0A> > Sharad=A0 =0A> > --- On Thu, 28/4/11, Mahmood Naderan <nt_m=
[email protected]>=0A> > wrote:=0A> > =0A> > > From: Mahmood Naderan <nt_mah=
[email protected]>=0A> > > Subject: Re: problem with=0A> HostbasedAuthenticati=
on=0A> > > To: "Sharad" <[email protected]>=0A> > > Cc: "secureshell@sec=
urityfocus.com"=0A> > <[email protected]>=0A> > > Date: Thursda=
y, 28 April, 2011, 3:54 PM=0A> > > Can you explain exactly which file I=0A>=
 > > should edit? What is FQDN? By 'hostname', Do you=0A> mean=0A> > server=
=0A> > > hostname of client hostname. =0A> > > Should I do that on both sid=
e or server side?...=0A> > > =0A> > > // Naderan *Mahmood;=0A> > > =0A> > >=
 =0A> > > ----- Original Message -----=0A> > > From: Sharad <sharad2011@yah=
oo.com>=0A> > > To: Mahmood Naderan <[email protected]>;=0A> > > Asif Iq=
bal <[email protected]>=0A> > > Cc: "[email protected]"=0A> > > =
<[email protected]>=0A> > > Sent: Thursday, April 28, 2011 1:16=
 PM=0A> > > Subject: Re: problem with=0A> HostbasedAuthentication=0A> > > =
=0A> > > Sometimes the issue lies with hostname as well.=0A> What I=0A> > m=
ean=0A> > > with that is the known_hosts may have just the=0A> host=0A> > n=
ame=0A> > > where as when the connection is established, the=0A> debug=0A> =
> shows=0A> > > the FQDN. I faced this issue so to be sure, I=0A> edited=0A=
> > the=0A> > > known_hosts file and inserted the hostname,=0A> hostname's=
=0A> > FQDN=0A> > > and it's IP address (all comma separated).=0A> > > =0A>=
 > > Also ensure that you both the hosts' known_hosts=0A> files=0A> > have=
=0A> > > opposite servers names (as prescribed above). =0A> > > =0A> > > Al=
l the above checks makes it work for me.=0A> > > =0A> > > Hope this solves.=
=0A> > > =0A> > > Kind regards,=0A> > > Sharad=0A> > > --- On Thu, 28/4/11,=
 Asif Iqbal <[email protected]>=0A> > > wrote:=0A> > > =0A> > > > From: Asif=
 Iqbal <[email protected]>=0A> > > > Subject: Re: problem with=0A> > Hostbas=
edAuthentication=0A> > > > To: "Mahmood Naderan" <[email protected]>=0A>=
 > > > Cc: "[email protected]"=0A> > > <secureshell@securityfoc=
us.com>=0A> > > > Date: Thursday, 28 April, 2011, 12:38 AM=0A> > > > On Wed=
, Apr 27, 2011 at 1:12 AM,=0A> > > > Mahmood Naderan <[email protected]>=
=0A> > > > wrote:=0A> > > > >>Change the order method. Have=0A> hostbased=
=0A> > > before=0A> > > > password=0A> > > > >=0A> > > > > Sorry where shou=
ld I do that?=0A> > > > =0A> > > > man ssh_config and look into=0A> > Prefe=
rredAuthentications=0A> > > > =0A> > > > >=0A> > > > > // Naderan *Mahmood;=
=0A> > > > >=0A> > > > > From: Asif Iqbal <[email protected]>=0A> > > > > To=
: Mahmood Naderan <[email protected]>=0A> > > > > Cc: "secureshell@secur=
ityfocus.com"=0A> > > > <[email protected]>=0A> > > > > Sent: W=
ednesday, April 27, 2011 9:17=0A> AM=0A> > > > > Subject: Re: problem with=
=0A> > > HostbasedAuthentication=0A> > > > >=0A> > > > >=0A> > > > > Change=
 the order method. Have=0A> hostbased=0A> > before=0A> > > > password=0A> >=
 > > > On Apr 26, 2011 11:52 PM, "Mahmood=0A> Naderan"=0A> > > <nt_mahmood@=
yahoo.com>=0A> > > > wrote:=0A> > > > >>=0A> > > > >>=0A> > > > >> Hi,=0A> =
> > > >> I am trying to setup a hostbased=0A> > passwrodless=0A> > > ssh=0A=
> > > > from a client to a server using this guide=0A> http://www.ehow.com/=
how_7621307_set-up-hostbased-authentication.html.=0A> > > > >>=0A> > > > >>=
 The client looks like:=0A> > > > >>=0A> > > > >> mahmood@client:~$ cat=0A>=
 > /etc/ssh/ssh_config=A0 |=0A> > > grep=0A> > > > "HostbasedAuthentication=
"=0A> > > > >> =A0=A0 HostbasedAuthentication yes=0A> > > > >> mahmood@clie=
nt:~$ cat=0A> > /etc/ssh/ssh_config=A0 |=0A> > > grep=0A> > > > "EnableSSHK=
eysign"=0A> > > > >> =A0=A0 EnableSSHKeysign yes=0A> > > > >>=0A> > > > >>=
=0A> > > > >> and the server looks like:=0A> > > > >> mahmood@server:~$ cat=
=0A> > /etc/ssh/sshd_config=A0=0A> > > |=0A> > > > grep "HostbasedAuthentic=
ation"=0A> > > > >> HostbasedAuthentication yes=0A> > > > >> mahmood@server=
:~$ cat=0A> > /etc/ssh/sshd_config=A0=0A> > > |=0A> > > > grep "IgnoreRhost=
s"=0A> > > > >> IgnoreRhosts no=0A> > > > >>=0A> > > > >> also the server h=
as the key for=0A> client:=0A> > > > >>=0A> > > > >> mahmood@server:~$ cat=
=0A> > > /etc/ssh/ssh_known_hosts=0A> > > > >> client ssh-rsa AAAAB3Nz.....=
=0A> > > > >>=0A> > > > >> the ~/.shosts file on the server=0A> > contains:=
=0A> > > > >> mahmood@server:~$ cat .shosts=0A> > > > >> client.domain mahm=
ood=0A> > > > >>=0A> > > > >> Then on both server and client, the=0A> ssh=
=0A> > > service is=0A> > > > restarted:=0A> > > > >> mahmood@client:~$ sud=
o service ssh=0A> > restart=0A> > > > >> ssh start/running, process 1355=0A=
> > > > >> mahmood@server:~$ sudo service ssh=0A> > restart=0A> > > > >> ss=
h start/running, process 28982=0A> > > > >>=0A> > > > >> How, when I run "s=
sh -vvv server"=0A> from=0A> > client=0A> > > (to=0A> > > > show the verbos=
e messages), I still get the=0A> > password=0A> > > > prompt.=0A> > > > >>=
=0A> > > > >> mahmood@client:~$ ssh -vvv server=0A> > > > >> OpenSSH_5.3p1 =
Debian-3ubuntu6,=0A> OpenSSL=0A> > 0.9.8k=0A> > > 25=0A> > > > Mar 2009=0A>=
 > > > >> debug1: Reading configuration data=0A> > > > /etc/ssh/ssh_config=
=0A> > > > >> debug1: Applying options for *=0A> > > > >> debug2: ssh_conne=
ct: needpriv 0=0A> > > > >> debug1: Connecting to server=0A> > [192.168.1.1=
]=0A> > > port=0A> > > > 22.=0A> > > > >> debug1: Connection established.=
=0A> > > > >> debug1: identity file=0A> > > /home/mahmood/.ssh/identity=0A>=
 > > > type -1=0A> > > > >> debug1: identity file=0A> > > /home/mahmood/.ss=
h/id_rsa=0A> > > > type -1=0A> > > > >> debug1: identity file=0A> > > /home=
/mahmood/.ssh/id_dsa=0A> > > > type -1=0A> > > > >> debug1: Remote protocol=
 version=0A> 2.0,=0A> > remote=0A> > > > software version OpenSSH_5.3p1=0A>=
 Debian-3ubuntu4=0A> > > > >> debug1: match: OpenSSH_5.3p1=0A> > Debian-3ub=
untu4=0A> > > pat=0A> > > > OpenSSH*=0A> > > > >> debug1: Enabling compatib=
ility mode=0A> for=0A> > > protocol=0A> > > > 2.0=0A> > > > >> debug1: Loca=
l version string=0A> > > SSH-2.0-OpenSSH_5.3p1=0A> > > > Debian-3ubuntu6=0A=
> > > > >> debug2: fd 3 setting O_NONBLOCK=0A> > > > >> debug1: SSH2_MSG_KE=
XINIT sent=0A> > > > >> debug3: Wrote 792 bytes for a total=0A> of=0A> > 83=
1=0A> > > > >> debug1: SSH2_MSG_KEXINIT received=0A> > > > >> debug2: kex_p=
arse_kexinit:=0A> > > >=0A> > >=0A> >=0A> diffie-hellman-group-exchange-sha=
256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-h=
ellman-=0A> > > > >> group1-sha1=0A> > > > >> debug2: kex_parse_kexinit:=0A=
> > ssh-rsa,ssh-dss=0A> > > > >> debug2: kex_parse_kexinit:=0A> > > >=0A> >=
 >=0A> >=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-=
cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-=0A> > > > >> cbc,aes256-cbc,a=
rcfour,[email protected]=0A> > > > >> debug2: kex_parse_kexinit:=
=0A> > > >=0A> > >=0A> >=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,ar=
cfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-=0A> > > > >> =
cbc,aes256-cbc,arcfour,[email protected]=0A> > > > >> debug2: kex=
_parse_kexinit:=0A> > > hmac-md5,hmac-sha1,[email protected],hmac-ripemd1=
60,[email protected],hmac-sha1-96,hmac-=0A> > > > >> md5-96=0A> > =
> > >> debug2: kex_parse_kexinit:=0A> > > hmac-md5,hmac-sha1,umac-64@openss=
h.com,hmac-ripemd160,[email protected],hmac-sha1-96,hmac-=0A> > > =
> >> md5-96=0A> > > > >> debug2: kex_parse_kexinit: none,[email protected],z=
lib=0A> > > > >> debug2: kex_parse_kexinit: none,[email protected],zlib=0A> =
> > > >> debug2: kex_parse_kexinit:=0A> > > > >> debug2: kex_parse_kexinit:=
=0A> > > > >> debug2: kex_parse_kexinit:=0A> > first_kex_follows=0A> > > 0=
=0A> > > > >> debug2: kex_parse_kexinit: reserved=0A> 0=0A> > > > >> debug2=
: kex_parse_kexinit:=0A> > > >=0A> > >=0A> >=0A> diffie-hellman-group-excha=
nge-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,d=
iffie-hellman-=0A> > > > >> group1-sha1=0A> > > > >> debug2: kex_parse_kexi=
nit:=0A> > ssh-rsa,ssh-dss=0A> > > > >> debug2: kex_parse_kexinit:=0A> > > =
>=0A> > >=0A> >=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,=
aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-=0A> > > > >> cbc,aes25=
6-cbc,arcfour,[email protected]=0A> > > > >> debug2: kex_parse_ke=
xinit:=0A> > > >=0A> > >=0A> >=0A> aes128-ctr,aes192-ctr,aes256-ctr,arcfour=
256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-=0A> > >=
 > >> cbc,aes256-cbc,arcfour,[email protected]=0A> > > > >> debug=
2: kex_parse_kexinit:=0A> > > hmac-md5,hmac-sha1,[email protected],hmac-r=
ipemd160,[email protected],hmac-sha1-96,hmac-=0A> > > > >> md5-96=
=0A> > > > >> debug2: kex_parse_kexinit:=0A> > > hmac-md5,hmac-sha1,umac-64=
@openssh.com,hmac-ripemd160,[email protected],hmac-sha1-96,hmac-=
=0A> > > > >> md5-96=0A> > > > >> debug2: kex_parse_kexinit: none,zlib@open=
ssh.com=0A> > > > >> debug2: kex_parse_kexinit: none,[email protected]=0A> >=
 > > >> debug2: kex_parse_kexinit:=0A> > > > >> debug2: kex_parse_kexinit:=
=0A> > > > >> debug2: kex_parse_kexinit:=0A> > first_kex_follows=0A> > > 0=
=0A> > > > >> debug2: kex_parse_kexinit: reserved=0A> 0=0A> > > > >> debug2=
: mac_setup: found hmac-md5=0A> > > > >> debug1: kex: server->client=0A> > =
aes128-ctr=0A> > > hmac-md5=0A> > > > none=0A> > > > >> debug2: mac_setup: =
found hmac-md5=0A> > > > >> debug1: kex: client->server=0A> > aes128-ctr=0A=
> > > hmac-md5=0A> > > > none=0A> > > > >> debug1:=0A> > > >=0A> > SSH2_MSG=
_KEX_DH_GEX_REQUEST(1024<1024<8192)=0A> > > sent=0A> > > > >> debug1: expec=
ting=0A> > SSH2_MSG_KEX_DH_GEX_GROUP=0A> > > > >> debug3: Wrote 24 bytes fo=
r a total=0A> of=0A> > 855=0A> > > > >> debug2: dh_gen_key: priv key bits=
=0A> set:=0A> > > 124/256=0A> > > > >> debug2: bits set: 507/1024=0A> > > >=
 >> debug1: SSH2_MSG_KEX_DH_GEX_INIT=0A> sent=0A> > > > >> debug1: expectin=
g=0A> > SSH2_MSG_KEX_DH_GEX_REPLY=0A> > > > >> debug3: Wrote 144 bytes for =
a total=0A> of=0A> > 999=0A> > > > >> debug3: check_host_in_hostfile:=0A> >=
 filename=0A> > > > /home/mahmood/.ssh/known_hosts=0A> > > > >> debug3: che=
ck_host_in_hostfile:=0A> match=0A> > line 1=0A> > > > >> debug3: check_host=
_in_hostfile:=0A> > filename=0A> > > > /home/mahmood/.ssh/known_hosts=0A> >=
 > > >> debug3: check_host_in_hostfile:=0A> match=0A> > line 2=0A> > > > >>=
 debug1: Host 'server' is known and=0A> > matches=0A> > > the RSA=0A> > > >=
 host key.=0A> > > > >> debug1: Found key in=0A> > > > /home/mahmood/.ssh/k=
nown_hosts:1=0A> > > > >> debug2: bits set: 503/1024=0A> > > > >> debug1: s=
sh_rsa_verify: signature=0A> > correct=0A> > > > >> debug2: kex_derive_keys=
=0A> > > > >> debug2: set_newkeys: mode 1=0A> > > > >> debug1: SSH2_MSG_NEW=
KEYS sent=0A> > > > >> debug1: expecting SSH2_MSG_NEWKEYS=0A> > > > >> debu=
g3: Wrote 16 bytes for a total=0A> of=0A> > 1015=0A> > > > >> debug2: set_n=
ewkeys: mode 0=0A> > > > >> debug1: SSH2_MSG_NEWKEYS received=0A> > > > >> =
debug1: SSH2_MSG_SERVICE_REQUEST=0A> sent=0A> > > > >> debug3: Wrote 48 byt=
es for a total=0A> of=0A> > 1063=0A> > > > >> debug2: service_accept:=0A> s=
sh-userauth=0A> > > > >> debug1: SSH2_MSG_SERVICE_ACCEPT=0A> > received=0A>=
 > > > >> debug2: key:=0A> > /home/mahmood/.ssh/identity=0A> > > ((nil))=0A=
> > > > >> debug2: key:=0A> /home/mahmood/.ssh/id_rsa=0A> > > ((nil))=0A> >=
 > > >> debug2: key:=0A> /home/mahmood/.ssh/id_dsa=0A> > > ((nil))=0A> > > =
> >> debug3: Wrote 64 bytes for a total=0A> of=0A> > 1127=0A> > > > >> debu=
g1: Authentications that can=0A> > continue:=0A> > > > publickey,password,h=
ostbased=0A> > > > >> debug3: start over, passed a=0A> different=0A> > list=
=0A> > > > publickey,password,hostbased=0A> > > > >> debug3: preferred=0A> =
> > >=0A> > >=0A> >=0A> gssapi-keyex,gssapi-with-mic,gssapi,hostbased,publi=
ckey,keyboard-interactive,password=0A> > > > >> debug3: authmethod_lookup=
=0A> hostbased=0A> > > > >> debug3: remaining preferred:=0A> > > > publicke=
y,keyboard-interactive,password=0A> > > > >> debug3: authmethod_is_enabled=
=0A> hostbased=0A> > > > >> debug1: Next authentication=0A> method:=0A> > >=
 hostbased=0A> > > > >> debug2: userauth_hostbased: chost=0A> > client.=0A>=
 > > > >> debug2: ssh_keysign called=0A> > > > >> debug3: ssh_msg_send: typ=
e 2=0A> > > > >> debug3: ssh_msg_recv entering=0A> > > > >> debug1: permane=
ntly_drop_suid:=0A> 1000=0A> > > > >> debug2: we sent a hostbased packet,=
=0A> wait=0A> > for=0A> > > > reply=0A> > > > >> debug3: Wrote 608 bytes fo=
r a total=0A> of=0A> > 1735=0A> > > > >> debug1: Authentications that can=
=0A> > continue:=0A> > > > publickey,password,hostbased=0A> > > > >> debug2=
: userauth_hostbased: chost=0A> > client.=0A> > > > >> debug2: ssh_keysign =
called=0A> > > > >> debug3: ssh_msg_send: type 2=0A> > > > >> debug3: ssh_m=
sg_recv entering=0A> > > > >> debug1: permanently_drop_suid:=0A> 1000=0A> >=
 > > >> debug2: we sent a hostbased packet,=0A> wait=0A> > for=0A> > > > re=
ply=0A> > > > >> debug3: Wrote 672 bytes for a total=0A> of=0A> > 2407=0A> =
> > > >> debug1: Authentications that can=0A> > continue:=0A> > > > publick=
ey,password,hostbased=0A> > > > >> debug1: No more client hostkeys=0A> for=
=0A> > > hostbased=0A> > > > authentication.=0A> > > > >> debug2: we did no=
t send a packet,=0A> > disable=0A> > > method=0A> > > > >> debug3: authmeth=
od_lookup=0A> publickey=0A> > > > >> debug3: remaining preferred:=0A> > > >=
 keyboard-interactive,password=0A> > > > >> debug3: authmethod_is_enabled=
=0A> publickey=0A> > > > >> debug1: Next authentication=0A> method:=0A> > >=
 publickey=0A> > > > >> debug1: Trying private key:=0A> > > > /home/mahmood=
/.ssh/identity=0A> > > > >> debug3: no such identity:=0A> > > > /home/mahmo=
od/.ssh/identity=0A> > > > >> debug1: Trying private key:=0A> > > > /home/m=
ahmood/.ssh/id_rsa=0A> > > > >> debug3: no such identity:=0A> > > > /home/m=
ahmood/.ssh/id_rsa=0A> > > > >> debug1: Trying private key:=0A> > > > /home=
/mahmood/.ssh/id_dsa=0A> > > > >> debug3: no such identity:=0A> > > > /home=
/mahmood/.ssh/id_dsa=0A> > > > >> debug2: we did not send a packet,=0A> > d=
isable=0A> > > method=0A> > > > >> debug3: authmethod_lookup password=0A> >=
 > > >> debug3: remaining preferred:=0A> ,password=0A> > > > >> debug3: aut=
hmethod_is_enabled=0A> password=0A> > > > >> debug1: Next authentication=0A=
> method:=0A> > password=0A> > > > >> mahmood@server's password:=0A> > > > =
>>=0A> > > > >>=0A> > > > >> Any idea about that?=0A> > > > >>=0A> > > > >>=
 // Naderan *Mahmood;=0A> > > > >>=0A> > > > >=0A> > > > =0A> > > > =0A> > =
> > =0A> > > > -- =0A> > > > Asif Iqbal=0A> > > > PGP Key: 0xE62693C5 KeySe=
rver: pgp.mit.edu=0A> > > > A: Because it messes up the order in which=0A> =
> people=0A> > > normally=0A> > > > read text.=0A> > > > Q: Why is top-post=
ing such a bad thing?=0A> > > >=0A> > >=0A> > =0A> >=0A> =0A>