[Info-vax] problem conncting via ssh to Fedora-linux-server FC22

Joukj joukj at hrem.nano.tudelft.nl
Mon Jun 1 08:39:26 EDT 2015


Hi All,


I recently upgraded one of my Fedora-linux servers from FC21 to FC22. 
After the upgrade I was not able to connect via ssh from my OpenVMS 
machines to this server (see log for connections to FC22 (failed) and 
FC21 (succeeded) below.) Connection from any of my linux servers is 
still possible.
It seems that something goes wrong when negotiating the ciphers.

As ssh-client I tried both (on OpenVMS v 8.4):
   HP TCP/IP Services for OpenVMS Alpha Version V5.7 - ECO 5
   HP TCP/IP Services for OpenVMS Industry Standard 64 Version V5.7 - ECO 5

Is my TCP/IP stack to blame? Is there a work-around?


                  Regards
                      Jouk







Failed connection to FC22 server



gigue-jj) ssh -v foxtrot
debug(27-MAY-2015 15:26:51.18): Ssh2/SSH2.C:1896: CRTL version 
(SYS$SHARE:DECC$S
HR.EXE ident) is ELF
debug(27-MAY-2015 15:26:51.19): SshAppCommon/SSHAPPCOMMON.C:313: 
Allocating glob
al SshRegex context.
debug(27-MAY-2015 15:26:51.20): SshConfig/SSHCONFIG.C:3482: Metaconfig 
parsing s
topped at line 4.
debug(27-MAY-2015 15:26:51.20): SshConfig/SSHCONFIG.C:890: Setting 
variable 'Ver
boseMode' to 'FALSE'.
debug(27-MAY-2015 15:26:51.21): SshConfig/SSHCONFIG.C:3390: Unable to 
open ssh2/
ssh2_config
debug(27-MAY-2015 15:26:51.22): Connecting to foxtrot, port 22... (SOCKS 
not use
d)
debug(27-MAY-2015 15:26:51.22): Ssh2/SSH2.C:2881: Entering event loop.
debug(27-MAY-2015 15:26:51.24): Ssh2Client/SSHCLIENT.C:1655: Creating 
transport
protocol.
debug(27-MAY-2015 15:26:51.24): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"publickey" to usable methods.
debug(27-MAY-2015 15:26:51.24): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"keyboard-interactive" to usable methods.
debug(27-MAY-2015 15:26:51.24): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"password" to usable methods.
debug(27-MAY-2015 15:26:51.24): Ssh2Client/SSHCLIENT.C:1696: Creating 
userauth p
rotocol.
debug(27-MAY-2015 15:26:51.24): client supports 3 auth methods: 
'publickey,keybo
ard-interactive,password'
debug(27-MAY-2015 15:26:51.24): SshUnixTcp/SSHUNIXTCP.C:1758: using 
local hostna
me gigue.nano.tudelft.nl
debug(27-MAY-2015 15:26:51.24): Ssh2Common/SSHCOMMON.C:541: local ip = 
131.180.1
16.53, local port = 49191
debug(27-MAY-2015 15:26:51.24): Ssh2Common/SSHCOMMON.C:543: remote ip = 
131.180.
116.51, remote port = 22
debug(27-MAY-2015 15:26:51.24): SshConnection/SSHCONN.C:2584: Wrapping...
debug(27-MAY-2015 15:26:51.24): SshReadLine/SSHREADLINE.C:3662: 
Initializing Rea
dLine...
debug(27-MAY-2015 15:26:51.26): Remote version: SSH-2.0-OpenSSH_6.8
debug(27-MAY-2015 15:26:51.26): OpenSSH: Major: 6 Minor: 8 Revision: 0
debug(27-MAY-2015 15:26:51.26): Ssh2Transport/TRCOMMON.C:1857: All 
versions of O
penSSH handle kex guesses incorrectly.
debug(27-MAY-2015 15:26:51.26): Ssh2Transport/TRCOMMON.C:1935: Using 
Client orde
r for common key exchange algorithms.
debug(27-MAY-2015 15:26:51.26): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:26:51.26): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 20 to connection
debug(27-MAY-2015 15:26:51.27): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=2
0
debug(27-MAY-2015 15:26:51.27): Ssh2Transport/TRCOMMON.C:2394: lang s to 
c: `',
lang c to s: `'
debug(27-MAY-2015 15:26:51.27): Ssh2Transport/TRCOMMON.C:2410: Couldn't 
agree on
  kex or hostkey alg. (chosen_kex = NULL, chosen_host_key = ssh-rsa)
debug(27-MAY-2015 15:26:51.27): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:26:51.27): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 1 to connection
debug(27-MAY-2015 15:26:51.27): Ssh2Common/SSHCOMMON.C:180: DISCONNECT 
received:
  Algorithm negotiation failed.
debug(27-MAY-2015 15:26:51.27): SshReadLine/SSHREADLINE.C:3728: 
Uninitializing R
eadLine...
warning: Authentication failed.
debug(27-MAY-2015 15:26:51.27): Ssh2/SSH2.C:327: locally_generated = TRUE
Disconnected; key exchange or algorithm negotiation failed (Algorithm 
negotiatio
n failed.).

debug(27-MAY-2015 15:26:51.27): Ssh2Client/SSHCLIENT.C:1731: Destroying 
client.
debug(27-MAY-2015 15:26:51.27): SshConfig/SSHCONFIG.C:2888: Freeing pki. 
(host_p
ki != NULL, user_pki = NULL)
debug(27-MAY-2015 15:26:51.27): SshConnection/SSHCONN.C:2636: Destroying 
SshConn
  object.
debug(27-MAY-2015 15:26:51.27): Ssh2Client/SSHCLIENT.C:1799: Destroying 
client c
ompleted.
debug(27-MAY-2015 15:26:51.27): 
SshAuthMethodClient/SSHAUTHMETHODC.C:109: Destro
ying authentication method array.
debug(27-MAY-2015 15:26:51.30): SshAppCommon/SSHAPPCOMMON.C:326: Freeing 
global
SshRegex context.
debug(27-MAY-2015 15:26:51.30): SshConfig/SSHCONFIG.C:2888: Freeing pki. 
(host_p
ki = NULL, user_pki = NULL)









Successful connection to FC21 server


gigue-jj) ssh -v vleegert
debug(27-MAY-2015 15:29:07.33): Ssh2/SSH2.C:1896: CRTL version 
(SYS$SHARE:DECC$S
HR.EXE ident) is ELF
debug(27-MAY-2015 15:29:07.35): SshAppCommon/SSHAPPCOMMON.C:313: 
Allocating glob
al SshRegex context.
debug(27-MAY-2015 15:29:07.36): SshConfig/SSHCONFIG.C:3482: Metaconfig 
parsing s
topped at line 4.
debug(27-MAY-2015 15:29:07.36): SshConfig/SSHCONFIG.C:890: Setting 
variable 'Ver
boseMode' to 'FALSE'.
debug(27-MAY-2015 15:29:07.36): SshConfig/SSHCONFIG.C:3390: Unable to 
open ssh2/
ssh2_config
debug(27-MAY-2015 15:29:07.38): Connecting to vleegert, port 22... 
(SOCKS not us
ed)
debug(27-MAY-2015 15:29:07.38): Ssh2/SSH2.C:2881: Entering event loop.
debug(27-MAY-2015 15:29:07.40): Ssh2Client/SSHCLIENT.C:1655: Creating 
transport
protocol.
debug(27-MAY-2015 15:29:07.40): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"publickey" to usable methods.
debug(27-MAY-2015 15:29:07.40): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"keyboard-interactive" to usable methods.
debug(27-MAY-2015 15:29:07.40): 
SshAuthMethodClient/SSHAUTHMETHODC.C:104: Added
"password" to usable methods.
debug(27-MAY-2015 15:29:07.40): Ssh2Client/SSHCLIENT.C:1696: Creating 
userauth p
rotocol.
debug(27-MAY-2015 15:29:07.40): client supports 3 auth methods: 
'publickey,keybo
ard-interactive,password'
debug(27-MAY-2015 15:29:07.40): SshUnixTcp/SSHUNIXTCP.C:1758: using 
local hostna
me gigue.nano.tudelft.nl
debug(27-MAY-2015 15:29:07.40): Ssh2Common/SSHCOMMON.C:541: local ip = 
131.180.1
16.53, local port = 49192
debug(27-MAY-2015 15:29:07.40): Ssh2Common/SSHCOMMON.C:543: remote ip = 
131.180.
116.49, remote port = 22
debug(27-MAY-2015 15:29:07.40): SshConnection/SSHCONN.C:2584: Wrapping...
debug(27-MAY-2015 15:29:07.40): SshReadLine/SSHREADLINE.C:3662: 
Initializing Rea
dLine...
debug(27-MAY-2015 15:29:07.41): Remote version: SSH-2.0-OpenSSH_6.6.1
debug(27-MAY-2015 15:29:07.41): OpenSSH: Major: 6 Minor: 6 Revision: 1
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:1857: All 
versions of O
penSSH handle kex guesses incorrectly.
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:1935: Using 
Client orde
r for common key exchange algorithms.
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 20 to connection
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=2
0
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:2394: lang s to 
c: `',
lang c to s: `'
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:2459: c_to_s: 
cipher ae
s128-cbc, mac hmac-sha1, compression none
debug(27-MAY-2015 15:29:07.41): Ssh2Transport/TRCOMMON.C:2462: s_to_c: 
cipher ae
s128-cbc, mac hmac-sha1, compression none
debug(27-MAY-2015 15:29:07.42): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.42): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 30 to connection
debug(27-MAY-2015 15:29:07.42): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=3
1
debug(27-MAY-2015 15:29:07.44): Remote host key found from database.
debug(27-MAY-2015 15:29:07.45): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.45): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 21 to connection
debug(27-MAY-2015 15:29:07.45): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.45): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 5 to connection
debug(27-MAY-2015 15:29:07.45): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=2
debug(27-MAY-2015 15:29:07.49): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.49): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 50 to connection
debug(27-MAY-2015 15:29:07.49): Ssh2Common/SSHCOMMON.C:342: Received 
SSH_CROSS_S
TARTUP packet from connection protocol.
debug(27-MAY-2015 15:29:07.49): Ssh2Common/SSHCOMMON.C:392: Received 
SSH_CROSS_A
LGORITHMS packet from connection protocol.
debug(27-MAY-2015 15:29:07.50): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=5
1
debug(27-MAY-2015 15:29:07.50): server offers auth methods 
'publickey,gssapi-key
ex,gssapi-with-mic,password'.
debug(27-MAY-2015 15:29:07.50): SshConfig/SSHCONFIG.C:3390: Unable to 
open ssh2/
identification
debug(27-MAY-2015 15:29:07.50): Ssh2AuthClient/SSHAUTHC.C:378: Method 
'publickey
' disabled.
debug(27-MAY-2015 15:29:07.50): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 2 to connection
debug(27-MAY-2015 15:29:07.50): Ssh2Transport/TRCOMMON.C:1139: Sending 
packet wi
th type 50 to connection
debug(27-MAY-2015 15:29:07.50): Ssh2Transport/TRCOMMON.C:2832: >TR 
packet_type=5
1
debug(27-MAY-2015 15:29:07.50): server offers auth methods 
'publickey,gssapi-key
ex,gssapi-with-mic,password'.
debug(27-MAY-2015 15:29:07.50): Ssh2AuthPasswdClient/AUTHC-PASSWD.C:280: 
Startin
joukj's password:






More information about the Info-vax mailing list