SUMMARY: ssh and C2 security

From: Danny Petterson (Danny.Petterson@dmsn.dk)
Date: Wed Jan 29 2003 - 17:14:58 EST


Thanx to:
Bruce Senn
Steve Vandevender
Michael James Bradford
Ann Majeske

The simple thing to do was changing a line from "yes" to "no" in /usr/local/etc/sshd_config:
UsePrivilegeSeparation no

Ann Majeske, HP, pointed out the Tru64 Unix-version of ssh, based on the commercial ssh:
http://tru64unix.compaq.com/unix/ssh/

Again, thanx alot to the above people.

Greetings
Danny Petterson

> -----Original Message-----
> From: Danny Petterson
> Sent: Wednesday, January 29, 2003 10:26 PM
> To: tru64-unix-managers@ornl.gov
> Subject: ssh and C2 security
>
>
> Hey Managers!
>
> Problem on Tru64 5.1a, Enhanced Security, OpenSSH 3.5p1
> (OpenSSL 0.9.7, zlib 1.1.4). Im running sshd on the box.
> When I try to login with ssh from a pc, or from the machine
> itself I get the following error:
>
> :/var/tcb/files/__db_lock.share: Permission denied
> :/var/tcb/files/__db_lock.share: Permission denied
> :/var/tcb/files/__db_lock.share: Permission denied
>
> Cannot obtain database info on this terminal
> Could'nt establish session for <user> from :ffff:<ip-adress>
>
> Im pretty sure its an edauth -dt or -dv thing (the "Cannot
> obtain database info on this terminal" kind of indicates
> that), but I cant get a line in the database to work.
>
> Any help will be greatly appriciated.
>
> Greetings
> Danny Petterson
>



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:49:05 EDT