RE: SSHD question

2003-01-03 Thread Gordon Messmer
On Fri, 2003-01-03 at 13:45, Burke, Thomas G. wrote: > > I'm not arguing that, but the config files are identical - that's why > I asked here. Then you'd tell the server to only do protocol 2: Protocol 2 If you don't list protocol 1, it won't be offered to clients. -- redhat-list mailing l

RE: SSHD question

2003-01-03 Thread Burke, Thomas G.
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I'm not arguing that, but the config files are identical - that's why I asked here. - -Original Message- From: Gordon Messmer [mailto:[EMAIL PROTECTED]] Sent: Friday, January 03, 2003 4:42 PM To: [EMAIL PROTECTED] Subject: RE: SSH

RE: SSHD question

2003-01-03 Thread Gordon Messmer
nal Message- > From: Ed Wilts [mailto:[EMAIL PROTECTED]] > Sent: Friday, January 03, 2003 3:41 PM > To: [EMAIL PROTECTED] > Subject: Re: SSHD question > > > Why did you not install the version from Red Hat? It comes with the > start/stop scripts. -- redha

RE: SSHD question

2003-01-03 Thread Burke, Thomas G.
Sent: Friday, January 03, 2003 3:41 PM To: [EMAIL PROTECTED] Subject: Re: SSHD question On Fri, Jan 03, 2003 at 11:25:02AM -0800, Burke, Thomas G. wrote: > After the big wipeout, I've installed ssh2 from ssh.com... I > recall that ssh1 has some serious security issues with it,

RE: SSHD question

2003-01-03 Thread Burke, Thomas G.
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 but... I'm trying to disable ssh1, completely. I don't want sshd2 to accept the connection at all. - -Original Message- From: Ben Russo [mailto:[EMAIL PROTECTED]] Sent: Friday, January 03, 2003 3:40 PM To: [EMAIL PROTECTED] Subject

Re: SSHD question

2003-01-03 Thread Ed Wilts
On Fri, Jan 03, 2003 at 11:25:02AM -0800, Burke, Thomas G. wrote: > After the big wipeout, I've installed ssh2 from ssh.com... I recall > that ssh1 has some serious security issues with it, and that ssh1 > compatibility allows these bugs in, or some such. What are the lines > I need to put into t

Re: SSHD question

2003-01-03 Thread Ben Russo
You need a line that says: Protocol 2,1 You will also need host keys for both protocols, my sshd_config shows:# HostKey for protocol version 1 #HostKey /etc/ssh/ssh_host_key # HostKeys for protocol version 2 #HostKey /etc/ssh/ssh_host_rsa_key #HostKey /et

Re: sshd question...

2002-11-14 Thread Michael George
On Thu, Nov 14, 2002 at 08:13:22AM -0600, Bret Hughes wrote: > On Thu, 2002-11-14 at 06:50, Michael George wrote: > > On Wed, Nov 13, 2002 at 04:20:06PM -0500, Richard Tricoche wrote: > > > What I meant was, sshd is an xinetd-based service. You should check > > > xinetd's sshd config file, as you

Re: sshd question...

2002-11-14 Thread Bret Hughes
On Thu, 2002-11-14 at 06:50, Michael George wrote: > On Wed, Nov 13, 2002 at 04:20:06PM -0500, Richard Tricoche wrote: > > What I meant was, sshd is an xinetd-based service. You should check > > xinetd's sshd config file, as you can specify allows or denies there. I > > don't remember exactly whe

Re: sshd question...

2002-11-14 Thread Michael George
On Wed, Nov 13, 2002 at 04:20:06PM -0500, Richard Tricoche wrote: > What I meant was, sshd is an xinetd-based service. You should check > xinetd's sshd config file, as you can specify allows or denies there. I > don't remember exactly where this file is on the system. It does the same > things /

Re: sshd question...

2002-11-14 Thread Michael George
On Tue, Nov 12, 2002 at 03:45:47PM -0500, Richard Tricoche wrote: > > I would check your /etc/init.d/sshd file for any IP addresses being blocked > or allowed. > Also, check your general /etc/hosts.deny and /etc/hosts.allow files. It was the latter. I'd forgotten that I activated tcp_wrappers f

RE: sshd question...

2002-11-13 Thread Richard Tricoche
Title: RE: sshd question... What I meant was, sshd is an xinetd-based service.  You should check xinetd's sshd config file, as you can specify allows or denies there.  I don't remember exactly where this file is on the system.  It does the same things /etc/hosts.allow and /etc/hos

RE: sshd question...

2002-11-12 Thread Bret Hughes
On Tue, 2002-11-12 at 14:45, Richard Tricoche wrote: > Michael George, > > I would check your /etc/init.d/sshd file for any IP addresses being blocked > or allowed. > Also, check your general /etc/hosts.deny and /etc/hosts.allow files. > > I just joined this list today. Greetings all! > > Gre

RE: sshd question...

2002-11-12 Thread Richard Tricoche
Title: RE: sshd question... Michael George, I would check your /etc/init.d/sshd file for any IP addresses being blocked or allowed. Also, check your general /etc/hosts.deny and /etc/hosts.allow files. I just joined this list today.  Greetings all! Richard Tricoche / Systems Engineer