Re: AIX 5.2L "who" question

From: Adams Kevin J (kevin.adams@PHS.COM)
Date: Tue Mar 30 2004 - 13:14:05 EST


The IBM versions do give you the ability to change your expired password,
and you have to make sure sshd_config has UseLogin=yes.

Kevin Adams
PacifiCare Behavioral Health
Principal Systems Analyst
AIX CATE

-----Original Message-----
From: IBM AIX Discussion List [mailto:aix-l@Princeton.EDU]On Behalf Of
Holger.VanKoll@SWISSCOM.COM
Sent: Tuesday, March 30, 2004 5:27 AM
To: aix-l@Princeton.EDU
Subject: Re: [aix-l] AIX 5.2L "who" question

I doubt your problem has anything to do with host-keys. Maybe you installed
the new version without killing running ssh-daemons?

regarding passwd-expire: openssh does not check this - there are patches
(somewhere) you can add manually

maybe the ibm-version includes this patch, check

http://www-124.ibm.com/developerworks/projects/opensshi
<http://www-124.ibm.com/developerworks/projects/opensshi>

-----Original Message-----
From: IBM AIX Discussion List [mailto:aix-l@Princeton.EDU] On Behalf Of
terry.german@PHONES4U.CO.UK
Sent: Tuesday, March 30, 2004 3:00 PM
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

Thanks Holger.... You have solved my problem with the who command showing
ssh logins. I think all I had to do wash re-config the ssh-keys etc.

I have another ssh question if you could help.

Every month all users olgin passwords expire, now when they login in under
telnet the have the chance to change there password, but if they login is
under ssh they don't get a chance to change there password. Is there a
script available that forces a user under ssh login to change there password
when it expires??

Thanks very much again ALL...

-----Original Message-----
From: Holger.VanKoll@SWISSCOM.COM [mailto:Holger.VanKoll@SWISSCOM.COM]
Sent: 30 March 2004 12:52
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

this version might be 3.5-x but works:
http://vankoll.de/diverses/sshaixv5.tar.gz
<http://vankoll.de/diverses/sshaixv5.tar.gz>

I install it like this:
tf=sshaixv5.tar.gz

gzip -c -d $tf|tar -xf -

rm -f $tf

ssh-keygen -f /usr/local/ssh/etc/ssh_host_dsa_key -t dsa

ssh-keygen -f /usr/local/ssh/etc/ssh_host_rsa_key -t rsa

ssh-keygen -f /usr/local/ssh/etc/ssh_host_key -t rsa1

mkdir /var/empty

lsuser sshd #must exist

/usr/local/ssh/sbin/sshd -f /usr/local/ssh/etc/sshd_config

mkitab 'openssh:2:once:/usr/local/ssh/sbin/sshd -f
/usr/local/ssh/etc/sshd_config'

kill all "old" sshd-daemons before running the new one

-----Original Message-----
From: IBM AIX Discussion List [mailto:aix-l@Princeton.EDU] On Behalf Of
terry.german@PHONES4U.CO.UK
Sent: Tuesday, March 30, 2004 10:51 AM
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

Is there any chance you could send over your compiled ssh on a aix 5.x
server... I have downloaded and installed openssh.3.8 and openssl.0.9.6.12
and still have the same problems... who command doesn't show ssh login's.

Thanks

-----Original Message-----
From: Holger.VanKoll@SWISSCOM.COM [mailto:Holger.VanKoll@SWISSCOM.COM]
Sent: 29 March 2004 16:18
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

this one?
 <http://www.bullopensource.org/download/aix52/openssh-3.8.1.0.exe>
http://www.bullopensource.org/download/aix52/openssh-3.8.1.0.exe

that should work. I always compile on my own, so I cant say for sure.

again, the ssh-version does not matter - only the platform (4.x or 5.x)
where it has been compiled

-----Original Message-----
From: IBM AIX Discussion List [mailto:aix-l@Princeton.EDU] On Behalf Of
terry.german@PHONES4U.CO.UK
Sent: Monday, March 29, 2004 4:59 PM
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

Would you agree that the version

openssh-3.8.1.0.exe

is the correct version for AIX 5.2L, this is off the Bullserver. Do I need
anything else before I run this?

Thanks

-----Original Message-----
From: Holger.VanKoll@SWISSCOM.COM [mailto:Holger.VanKoll@SWISSCOM.COM]
Sent: 29 March 2004 15:51
To: aix-l@Princeton.EDU
Subject: Re: AIX 5.2L "who" question

you are using a 4.3.3-ssh version

utmp structure changed vom 4.x to 5.x

-> use a ssh-version compiled on 5.x

this is not related to the ssh-version you use - just where its been
compiled

-----Original Message-----
From: IBM AIX Discussion List [mailto:aix-l@Princeton.EDU] On Behalf Of
terry.german@PHONES4U.CO.UK
Sent: Monday, March 29, 2004 4:18 PM
To: aix-l@Princeton.EDU
Subject: AIX 5.2L "who" question

Before acting on this e-mail or opening any attachments you are advised to
read
The Caudwell Holdings group of companies' disclaimer at the end of this
e-mail.
=======================================================

Guru's,

Has any of you experienced this problem before??

We have a 44P-270 running AIX 5.2L, when users connected via ssh they can't
be see when I issuse the "who" command, the server is upto ML02.. any help
would be great thanks

Terry German
AIX System Administrator
IBM Certified Specialist - AIX
Phones 4u Limited
Swift House
Liverpool Road
Newcastle Under Lyme
ST5 9JJ.
[E] terry.german@phones4u.co.uk
< mailto:terry.german@phones4u.co.uk <mailto:terry.german@phones4u.co.uk> >
[T] +44 (0)1782 600783
[M] +44 (0)7748908609
[F] +44 (0)1782 587192
[W] http://www.phones4u.co.uk <http://www.phones4u.co.uk>

=======================================================
Confidentiality Notice
This e-mail is confidential and intended for the use of the named recipient
only.
If you are not the intended recipient please notify us by telephone
immediately
on +44(0)1782 600600 or return it to us by e-mail. Please then delete it
from
your system and note that any use, dissemination, forwarding, printing or
copying
is strictly prohibited.

Any views or opinions are solely those of the author and do not necessarily
represent those of The Caudwell Holdings group of companies.

Encryptions and Viruses
Please note that this e-mail and any attachments have not been encrypted.
They may therefore be liable to be compromised. Please also note that it is
your
responsibility to scan this e-mail and any attachments for viruses. We do
not,
to the extent permitted by law, accept any liability (whether in contract,
negligence
or otherwise) for any virus infection and/or external compromise of security
and/or
confidentiality in relation to transmissions sent by e-mail.

Monitoring
Activity and use of The Caudwell Holdings group of companies' systems is
monitored
to secure its effective use and operation and for other lawful business
purposes.
Communications using these systems will also be monitored and may be
recorded to
secure effective use and operation and for other lawful business purposes.

This electronic message transmission, including any attachments, contains
information from PacifiCare Health Systems Inc. which may be confidential or
privileged. The information is intended to be for the use of the individual or
entity named above. If you are not the intended recipient, be aware that any
disclosure, copying, distribution or use of the contents of this information
is prohibited.
If you have received this electronic transmission in error, please notify the
sender immediately by a "reply to sender only" message and destroy all
electronic and hard copies of the communication, including attachments.



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 22:17:47 EDT