This is a discussion on Re: Suggestion: SSHD pseudo/fake mode. Source available. within the OpenSSH Development forums, part of the Networking and Network Related category; Daniel Kastenholz wrote: > However, the daemon behaves slightly different when the "DenyUsers *" > option is used. By ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
Daniel Kastenholz wrote:
> However, the daemon behaves slightly different when the "DenyUsers *" > option is used. By default, sshd disconnects when the third wrong set of > credentials has been provided. With "DenyUsers *", this always happens > after the first attempt. Any such differences in behaviour ought to be found and fixed. Under what circumstances does this occur? (Compile options, config options, authentication method, valid/invalid user?) A quick test here with 3.9p1 shows the same behaviour for password and pubkey authentication (ie sshd just denies the auth attempt and the client can retry, up until the client disconnects or the MaxAuthTries limit is reached). Could you post the server-side debugging for both instances? -- Darren Tucker (dtucker at zip.com.au) GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4 37C9 C982 80C7 8FF4 FA69 Good judgement comes with experience. Unfortunately, the experience usually comes from bad judgement. _______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@mindrot.org http://www.mindrot.org/mailman/listi...enssh-unix-dev |
![]() |
| Thread Tools | |
| Display Modes | |
|
|