Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-03 Thread Anil K. Narayanan
Adam Megacz [EMAIL PROTECTED] writes:

 [EMAIL PROTECTED] (Anil K. Narayanan) writes:
  Have we turned off ssh pub-key auth. on mire
 
 Yes.
 
  (and do we plan to keep it that way) ?
 
 Yes.
 
 You can use ssh -K for passwordless logins.

Thanks Adam. I'm okay with krb at home. As for typing password, typing it once
for kinit is like typing ssh key passcode once for ssh-agent. 

However, wouldn't it be a problem for me when I connect from some place where 
UDP 
traffic to the internet is filtered (say from work, my office allows only a 
narrow 
assortment of TCP ports ) ? 
-- 
Anil.


___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


[HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Anil K. Narayanan
Hi,

Have we turned off ssh pub-key auth. on mire (and do we plan to keep it that 
way) ?

regards,
-- 
Anil.


___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Adam Megacz

[EMAIL PROTECTED] (Anil K. Narayanan) writes:
 Have we turned off ssh pub-key auth. on mire

Yes.

 (and do we plan to keep it that way) ?

Yes.

You can use ssh -K for passwordless logins.

  - a

-- 
PGP/GPG: 5C9F F366 C9CF 2145 E770  B1B8 EFB1 462D A146 C380


___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Adam Megacz

See man ssh_config on GSSAPIAuthentication and GSSAPIDelegateCredentials

Eric Hanchrow [EMAIL PROTECTED] writes:
 Adam == Adam Megacz [EMAIL PROTECTED] writes:
 Adam You can use ssh -K for passwordless logins.

 My ssh client (OpenSSH_4.2) has no -K option, nor do I see one
 documented at http://www.openbsd.org/cgi-bin/man.cgi?query=ssh.  Which
 version of ssh are you talking about?

 -- 
 Hamburgers!  The cornerstone of any nutritious breakfast.
 -- Jules {From Pulp Fiction}

-- 
PGP/GPG: 5C9F F366 C9CF 2145 E770  B1B8 EFB1 462D A146 C380


___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Eric Hanchrow
 Adam == Adam Megacz [EMAIL PROTECTED] writes:

Adam http://wiki.hcoop.net/wiki/RealSecurity

Ah, I read that and installed some kerberos stuff for my home machine
(namely kerberos4kth-clients (1.2.2-11.3ubuntu4)), made sure the
dns_ things weren't in my /etc/krb5.cnf, and then:

$ kinit [EMAIL PROTECTED]
eBones International (debian)
Kerberos Initialization for [EMAIL PROTECTED]
Password: 
kinit: Can't send request (send_to_kdc)
$ 

Now what? :-p

-- 
I'm a libertarian with a fascist heart.
-- Jim Blandy

___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Adam Megacz

Eric Hanchrow [EMAIL PROTECTED] writes:
 (namely kerberos4kth-clients (1.2.2-11.3ubuntu4)), made sure the

you want kerberos5

 dns_ things weren't in my /etc/krb5.cnf, and then:

 $ kinit [EMAIL PROTECTED]
 eBones International (debian)
 Kerberos Initialization for [EMAIL PROTECTED]
 Password: 
 kinit: Can't send request (send_to_kdc)
 $ 

 Now what? :-p

 -- 
 I'm a libertarian with a fascist heart.
 -- Jim Blandy

-- 
PGP/GPG: 5C9F F366 C9CF 2145 E770  B1B8 EFB1 462D A146 C380


___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss


Re: [HCoop-Discuss] pub-key ssh authentication

2007-06-02 Thread Michael Olson
Eric Hanchrow [EMAIL PROTECTED] writes:

 Adam == Adam Megacz [EMAIL PROTECTED] writes:

 Adam http://wiki.hcoop.net/wiki/RealSecurity

 Ah, I read that and installed some kerberos stuff for my home machine
 (namely kerberos4kth-clients (1.2.2-11.3ubuntu4)), made sure the
 dns_ things weren't in my /etc/krb5.cnf, and then:

You'll want the krb5-user package instead, if you're using Ubuntu
Feisty.

-- 
   Michael Olson -- FSF Associate Member #652 |
 http://mwolson.org/ -- Jabber: mwolson_at_hcoop.net  |  /` |\ | | |
Sysadmin -- Hobbies: Lisp, GP2X, HCoop| |_] | \| |_|
Projects: Emacs, Muse, ERC, EMMS, ErBot, DVC, Planner |


pgp2OG2OJHjhj.pgp
Description: PGP signature
___
HCoop-Discuss mailing list
HCoop-Discuss@hcoop.net
http://hcoop.net/cgi-bin/mailman/listinfo/hcoop-discuss