On Wed, 18 Apr 2001, Julius C. Duque wrote:
> 
> I've just tried openssh 2.5.1p2  to login to one of our secure server
> and it took over 5 minutes for the password prompt to come back

Did you run sshd using inetd? Running sshd using inetd is painfully
slow.

No. But the sshd daemon is running via a (slow) softdist server. Perhaps I 
should use my local copy

> Also, once I log into the server, it prints the /etc/motd twice
> Is it normal? The incoming connection from server to my desktop is a bit
> quicker (under 2 minutes)

Check your sshd_config (on /usr/local/etc by default)

Here is my local desktop sshd_config copy:


#       $OpenBSD: sshd_config,v 1.32 2001/02/06 22:07:50 deraadt Exp $
 
# This is the sshd server system-wide configuration file.  See sshd(8)
# for more information.

Port 22
#Protocol 2,1
#ListenAddress 0.0.0.0
#ListenAddress ::
HostKey /etc/ssh/ssh_host_key
HostKey /etc/ssh/ssh_host_dsa_key
#HostKey /etc/ssh/ssh_host_rsa_key
ServerKeyBits 768
LoginGraceTime 600
KeyRegenerationInterval 3600
PermitRootLogin yes
#
AllowGroups infsys
#
# Don't read ~/.rhosts and ~/.shosts files
IgnoreRhosts yes
# Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication
#IgnoreUserKnownHosts yes
StrictModes yes
X11Forwarding yes
X11DisplayOffset 10
PrintMotd no
KeepAlive yes

# Logging
SyslogFacility AUTH
LogLevel INFO
#obsoletes QuietMode and FascistLogging
 
RhostsAuthentication no
#
# For this to work you will also need host keys in /etc/ssh/ssh_known_hosts
RhostsRSAAuthentication no
#
RSAAuthentication yes

# To disable tunneled clear text passwords, change to no here!
PasswordAuthentication yes
PermitEmptyPasswords no

# Uncomment to disable s/key passwords 
#ChallengeResponseAuthentication no

# To change Kerberos options
#KerberosAuthentication no
#KerberosOrLocalPasswd yes
#AFSTokenPassing no
#KerberosTicketCleanup no

# Kerberos TGT Passing does only work with the AFS kaserver
#KerberosTgtPassing yes

#CheckMail yes
#UseLogin no

#MaxStartups 10:30:60
#Banner /etc/issue.net
#ReverseMappingCheck yes
Subsystem       sftp    /opt/SSH/libexec/sftp-server

Reply via email to