Jeremy Utley wrote:

Hey all!

Tonite I made an attempt to upgrade OpenSSH on my home server to the 4.0p1 version released yesterday. Compilation went fine, the daemon started up, but it seems to be summarily rejecting keyboard-interactive login. The minute it tries, instead of asking the client for a password, it says that authentication failed, and terminates the connection.

Just wondered if anyone else had tried and encountered this - I tried getting debug logs and everything, can't seem to find any hints in those as to what's wrong.

-J-

Replying to myself, as I am want to do sometimes...Did some research on the openssh devel list, and found the following post:

http://marc.theaimsgroup.com/?l=openssh-unix-dev&m=111046966722997&w=2

Seems this has something to do with glibc nss libraries and the sshd privsep code...something big-time changed between 3.9 and 4.0.

I don't have time to test the "workaround" there - creating /var/empty/lib - tonite, but I certainly will tomorrow night, and see if that solves it, and will report back here.

Until more is known about this problem, I would personally recommend to most people to NOT upgrade - afaik, 3.9p1 has no security vulnerabilities.

-J-

--
http://linuxfromscratch.org/mailman/listinfo/blfs-support
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to