elpoulpo nickel | Merci pour ta réponse, (instructif tout ça ) Sans rien changer ,on remarque ces lignes:
(je suis root dans les 2 cas)
-en opsave: ssh -v opsave@192.1.1.14
Code :
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Next authentication method: publickey
- debug1: Trying private key: /root/.ssh/identity
- debug1: Offering public key: /root/.ssh/id_rsa
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Offering public key: /root/.ssh/id_dsa
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Next authentication method: password
|
-en root: ssh -v root@192.1.1.14
Code :
- debug1: SSH2_MSG_SERVICE_ACCEPT received
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Next authentication method: publickey
- debug1: Trying private key: /root/.ssh/identity
- debug1: Offering public key: /root/.ssh/id_rsa
- debug1: Server accepts key: pkalg ssh-rsa blen 149 lastkey 0x8149900 hint
|
En forçant la connection via clef publique sur le "client" (dans ssh_config : PreferredAuthentications publickey), j'obtiens:
Code :
- # ssh -v opsave@192.1.1.14
- OpenSSH_3.6.1p2, SSH protocols 1.5/2.0, OpenSSL 0x0090701f
- debug1: Reading configuration data /etc/ssh/ssh_config
- debug1: Applying options for *
- debug1: Rhosts Authentication disabled, originating port will not be trusted.
- debug1: Connecting to 192.1.1.14 [192.1.1.14] port 22.
- debug1: Connection established.
- debug1: identity file /root/.ssh/identity type -1
- debug1: identity file /root/.ssh/id_rsa type 1
- debug1: identity file /root/.ssh/id_dsa type 2
- debug1: Remote protocol version 1.99, remote software version OpenSSH_3.9p1
- debug1: match: OpenSSH_3.9p1 pat OpenSSH*
- debug1: Enabling compatibility mode for protocol 2.0
- debug1: Local version string SSH-2.0-OpenSSH_3.6.1p2
- debug1: SSH2_MSG_KEXINIT sent
- debug1: SSH2_MSG_KEXINIT received
- debug1: kex: server->client aes128-cbc hmac-md5 none
- debug1: kex: client->server aes128-cbc hmac-md5 none
- debug1: SSH2_MSG_KEX_DH_GEX_REQUEST sent
- debug1: expecting SSH2_MSG_KEX_DH_GEX_GROUP
- debug1: SSH2_MSG_KEX_DH_GEX_INIT sent
- debug1: expecting SSH2_MSG_KEX_DH_GEX_REPLY
- debug1: Host '192.1.1.14' is known and matches the RSA host key.
- debug1: Found key in /root/.ssh/known_hosts:4
- debug1: ssh_rsa_verify: signature correct
- debug1: SSH2_MSG_NEWKEYS sent
- debug1: expecting SSH2_MSG_NEWKEYS
- debug1: SSH2_MSG_NEWKEYS received
- debug1: SSH2_MSG_SERVICE_REQUEST sent
- debug1: SSH2_MSG_SERVICE_ACCEPT received
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Next authentication method: publickey
- debug1: Trying private key: /root/.ssh/identity
- debug1: Offering public key: /root/.ssh/id_rsa
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: Offering public key: /root/.ssh/id_dsa
- debug1: Authentications that can continue: publickey,gssapi-with-mic,password
- debug1: No more authentication methods to try.
- Permission denied (publickey,gssapi-with-mic,password).
- debug1: Calling cleanup 0x8062d00(0x0)
|
J'ai donc bien un permission denied en opsave, mais je n'arrive pas à déterminer où De plus je ne trouve pas de message "intéressant" dans les logs du serveur... (dans messages?)
Merci
Message édité par elpoulpo le 08-02-2006 à 09:30:38
|