X-Recipient: archive-cygwin AT delorie DOT com X-SWARE-Spam-Status: No, hits=-0.4 required=5.0 tests=AWL,BAYES_00,RP_MATCHES_RCVD X-Spam-Check-By: sourceware.org From: Clayton Evans To: "cygwin AT cygwin DOT com" Date: Fri, 14 Oct 2011 15:28:14 -0500 Subject: RE: openssh authentification Message-ID: References: <20111014200714 DOT GA5531 AT jethro DOT local DOT lan> In-Reply-To: <20111014200714.GA5531@jethro.local.lan> Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 X-IsSubscribed: yes Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from quoted-printable to 8bit by delorie.com id p9EKSdSX025295 > > > > > > debug1: Next authentication method: publickey > > > > > > debug1: Offering RSA public key: /home/cevans/.ssh/id_rsa > > > > > > debug3: send_pubkey_test > > > > > > debug2: we sent a publickey packet, wait for reply > > > > > > debug1: Authentications that can continue: > > > > > > publickey,password,keyboard-interactive > > > > > > debug1: Offering DSA public key: /home/cevans/.ssh/id_dsa > > > > > > debug3: send_pubkey_test > > > > > > debug2: we sent a publickey packet, wait for reply > > > > > > debug1: Authentications that can continue: > > > > > > publickey,password,keyboard-interactive > > > > > > debug1: Offering ECDSA public key: /home/cevans/.ssh/id_ecdsa > > > > > > debug3: send_pubkey_test > > > > > > debug2: we sent a publickey packet, wait for reply > > > > > > debug1: Authentications that can continue: > > > > > publickey,password,keyboard-interactive > > > > > > debug2: we did not send a packet, disable method > > > > > > > > > > So all three of those keys were offered, but none were accepted. Are the public keys for those in your ~/.ssh/authorized_keys file on the server? > > > > > > > > I copied the .ssh/authorized_keys file from the client to the host before the ssh -vvv jti031 was done. > > > > > > OK, but that's not exactly what I asked. The question is, is one of those public keys (/home/cevans/.ssh/id_rsa.pub, /home/cevans/.ssh/id_dsa.pub, or /home/cevans/.ssh/id_ecdsa.pub from the client) in ~/.ssh/authorized_keys on the server? > > > > No, the id_*.pub files were not copied. > > > > I have now copied all three id_*.pub files from the client to the host. I have rerun 'ssh -vvv jti031' with identical results. (At least diff finds the results to be identical.) > > I'd double-check StrictModes and PubkeyAuthentication in sshd_config. > Also, there's no need to copy around your pub keys manually, use > ssh-copy-id(1) for that. ssh-copy-id requires that password authentication is working, which is not happening, so I tried manual moving of the files Clayton Evans -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple