Re: [Freeipa-users] Freeipa -ssh keys

2013-04-26 Thread Alexander Bokovoy
On Fri, 26 Apr 2013, naresh reddy wrote: Hi Alex  I had tried tshoot and so i have changed GSSAPIAuthentication to no  because i was getting debug1: Unspecified GSS failure.  Minor code may provide more information Ticket expired ^^^ Ticket expired means your ticket on the machine from which

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-26 Thread Alexander Bokovoy
On Fri, 26 Apr 2013, naresh reddy wrote: Hi Alexander Thank you very much it worked. its fantastic and I really appreciate your help.   but this scenario is to use the kerboros ticket for each time to login  what we are trying to establish is  users will have priviate and public ssh keys

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-26 Thread naresh reddy
@redhat.com freeipa-users@redhat.com Sent: Friday, April 26, 2013 11:44 AM Subject: Re: [Freeipa-users] Freeipa -ssh keys On Fri, 26 Apr 2013, naresh reddy wrote: Hi Alex  I had tried tshoot and so i have changed GSSAPIAuthentication to no  because i was getting debug1: Unspecified GSS failure

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-26 Thread naresh reddy
Hi Alex  I had tried tshoot and so i have changed GSSAPIAuthentication to no  because i was getting debug1: Unspecified GSS failure.  Minor code may provide more information Ticket expired debug1: Unspecified GSS failure.  Minor code may provide more information Ticket expired debug1:

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-25 Thread naresh reddy
...@redhat.com To: naresh reddy nareshbt...@yahoo.com Cc: Rob Crittenden rcrit...@redhat.com; freeipa-users@redhat.com freeipa-users@redhat.com Sent: Wednesday, April 24, 2013 11:30 AM Subject: Re: [Freeipa-users] Freeipa -ssh keys On 23.4.2013 20:20, naresh reddy wrote: Hi Rob I am sorry for coming

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-25 Thread naresh reddy
: Re: [Freeipa-users] Freeipa -ssh keys Hi Jan yes thats correct clinet is ldap1 and server is ldap1. root@ldap1 ssh]# /usr/bin/sss_ssh_knownhostsproxy -p 22 ldap1.eng.switchlab.net --debug 10 SSH-2.0-OpenSSH_6.1 Protocol mismatch. [root@ldap1 ssh]# /usr/bin/sss_ssh_authorizedkeys test@eng

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-25 Thread Alexander Bokovoy
On Thu, 25 Apr 2013, naresh reddy wrote: Hi all  my sshd config file #       $OpenBSD: sshd_config,v 1.87 2012/07/10 02:19:15 djm Exp $ # This is the sshd server system-wide configuration file.  See # sshd_config(5) for more information. # This sshd was compiled with

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-24 Thread Jan Cholasta
On 23.4.2013 20:20, naresh reddy wrote: Hi Rob I am sorry for coming back again i can see client can get the ssh keys from the server but still fails please suggest. By client you mean the machine that you are trying to ssh to, i.e. the machine that has sshd running? If not, make sure

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-23 Thread Rob Crittenden
*From:* Rob Crittenden rcrit...@redhat.com *To:* Naresh Chandra R Paturi nareshbt...@yahoo.com; freeipa-users@redhat.com *Sent:* Saturday, April 20, 2013 8:11 PM *Subject:* Re: [Freeipa-users] Freeipa -ssh keys Naresh Chandra R

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-23 Thread naresh reddy
...@yahoo.com; freeipa-users@redhat.com freeipa-users@redhat.com Sent: Tuesday, April 23, 2013 4:14 PM Subject: Re: [Freeipa-users] Freeipa -ssh keys naresh reddy wrote: Hi Rob Thank you very much but i tried the same with two fedora systems and got the similar issue i think the error is due

[Freeipa-users] Freeipa -ssh keys

2013-04-20 Thread Naresh Chandra R Paturi
Hi all I am new to freeipa we have a group of linux servers where we are tyring to establish password less logins, in order to do this we need to copy ssh keys of all uses to each and every cleint server . so we are trying to establish freeipa central server where we store the keys of all the

Re: [Freeipa-users] Freeipa -ssh keys

2013-04-20 Thread Rob Crittenden
Naresh Chandra R Paturi wrote: Hi all I am new to freeipa we have a group of linux servers where we are tyring to establish password less logins, in order to do this we need to copy ssh keys of all uses to each and every cleint server . so we are trying to establish freeipa central server where