Re: [Nolug] ssh issues

From: Ron Johnson <ron.l.johnson_at_cox.net>
Date: 15 May 2003 17:14:41 -0500
Message-Id: <1053036881.4256.121.camel@haggis>

On Thu, 2003-05-15 at 16:50, David wrote:
> Hello, can anyone help with the following situation:
> SSH appears to be running but will not accept any connections.
> Config files and log files shown below. SSH Server is behind
> clarkconnect with portforwarding enabled. Thanks for any help!
> -Dave

What's clarkconnect?

It looks like sshd is listening on IP address 10.1.1.3. When you are
on 10.1.1.3, can you do "ssh localhost"?

What's in /etc/hosts.allow and /etc/hosts.deny ?

Are you running sshd directly or via xinetd?

> /etc/ssh/sshd_config
> Subsystem sftp /usr/lib/ssh/sftp-server
> PermitRootLogin without-password
> ReverseMappingCheck no
> GatewayPorts no
> AllowTcpForwarding yes
> KeepAlive yes
> IgnoreRhosts yes
> RhostsRSAAuthentication no
> RhostsAuthentication no
> IgnoreUserKnownHosts no
> PrintMotd yes
> StrictModes yes
> RSAAuthentication yes
> PermitEmptyPasswords no
> PasswordAuthentication yes
> SyslogFacility DAEMON
>
>
> /var/log/daemons/warnings
> May 13 19:19:27 digitalsolutions-la sshd[19615]: refused connect from 192.168.1.253 (192.168.1.253)
> May 13 19:19:32 digitalsolutions-la sshd[29169]: refused connect from 68.14.40.5 (68.14.40.5)
> May 13 19:20:19 digitalsolutions-la sshd[2568]: refused connect from 192.168.1.253 (192.168.1.253)
> May 13 19:24:06 digitalsolutions-la sshd[14351]: refused connect from 192.168.1.253 (192.168.1.253)
> May 13 19:24:09 digitalsolutions-la sshd[29912]: refused connect from 68.14.40.5 (68.14.40.5)
>
>
>
> /var/log/daemons/info
>
>
> May 13 19:35:25 digitalsolutions-la xinetd[6285]: removing servers
> May 13 19:35:25 digitalsolutions-la xinetd[6285]: removing ssh
> May 13 19:35:25 digitalsolutions-la xinetd[6285]: removing time
> May 13 19:35:25 digitalsolutions-la xinetd[6285]: removing time
> May 13 19:35:25 digitalsolutions-la xinetd[6285]: removing xadmin
> May 13 19:35:26 digitalsolutions-la xinetd[6285]: xinetd Version 2.3.10 started with libwrap options compiled in.
> May 13 19:35:26 digitalsolutions-la xinetd[6285]: Started working: 1 available service
> May 13 20:01:01 digitalsolutions-la sshd[20606]: Received signal 15; terminating.
> May 13 20:01:01 digitalsolutions-la sshd[7061]: Server listening on 10.1.1.3 port 22.
>
>
>
> /var/log/daemons/errors
>
>
> May 13 19:30:57 digitalsolutions-la xinetd[20449]: warning: can't get client address: Transport endpoint is not connected
> May 13 19:30:57 digitalsolutions-la xinetd[18233]: Deactivating service sgi_fam due to excessive incoming connections. Restarting in 30 seconds.
> May 13 19:31:28 digitalsolutions-la xinetd[18233]: Activating service sgi_fam
>

-- 
+---------------------------------------------------------------+
| Ron Johnson, Jr.        mailto:ron.l.johnson@cox.net          |
| Jefferson, LA  USA      http://members.cox.net/ron.l.johnson  |
|                                                               |
| The purpose of the military isn't to pay your college tuition |
| or give you a little extra income; it's to "kill people and   |
| break things".  Surprisingly, not everyone understands that.  |
+---------------------------------------------------------------+
___________________
Nolug mailing list
nolug@nolug.org
Received on 05/15/03

This archive was generated by hypermail 2.2.0 : 12/19/08 EST