Re: AllowUsers not working under certain conditions

This is a discussion on Re: AllowUsers not working under certain conditions within the OpenSSH Development forums, part of the Networking and Network Related category; Thanks for the reply Darren, Darren Tucker wrote: > On Thu, Nov 17, 2005 at 12:50:53PM -0000, Donald ...


Go Back   Usenet Forums > Networking and Network Related > OpenSSH Development

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 11-18-2005
Donald Fraser
 
Posts: n/a
Default Re: AllowUsers not working under certain conditions

Thanks for the reply Darren,

Darren Tucker wrote:


> On Thu, Nov 17, 2005 at 12:50:53PM -0000, Donald Fraser wrote:
> [...]
> > The second problem is not present on the oppenssh-3.5p1-6 but is present

on
> > the later version oppenssh-3.9p1-8.

> [snip description]
>
> An explanation for this one does not immediately spring to mind.


The first problem I can live with, as there is a way around that one.
The second is not so easy to live with, I therefore have included the output
of the log that shows where it is failing.
I cut the log down to show the differences between failure and pass, rather
than the whole log file which tends to be rather large:
Nov 17 14:26:40 develop sshd[9301]: debug3: monitor_read: checking request 7
Nov 17 14:26:40 develop sshd[9301]: debug3: mm_answer_pwnamallow
Nov 17 14:26:40 develop sshd[9301]: User AUser not allowed because not
listed in AllowUsers
Nov 17 14:26:40 develop sshd[9301]: debug3: mm_answer_pwnamallow: sending
MONITOR_ANS_PWNAM: 0
Nov 17 14:26:40 develop sshd[9301]: debug3: mm_request_send entering: type 8

and when it passes by placing the exact IP address in the AllowUsers
section.

Nov 17 16:45:13 develop sshd[9575]: debug3: monitor_read: checking request 7
Nov 17 16:45:13 develop sshd[9575]: debug3: mm_answer_pwnamallow
Nov 17 16:45:13 develop sshd[9575]: debug3: mm_answer_pwnamallow: sending
MONITOR_ANS_PWNAM: 1
Nov 17 16:45:13 develop sshd[9575]: debug3: mm_request_send entering: type 8

Additional notes:
The user name "AUser" in the AllowUsers section does contain Upper and Lower
case letters.
The domain name returned from the reverse IP address look-up is of the form:
IP-IP-IP-IP.dyn.somedomain.com, where IP are numbers that represent the IP
address.

If you think having the whole log will be of help then I can attach that.
In the mean time I'll try and pin point the problem further by looking at
the code myself.


Regards
Donald Fraser

_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@mindrot.org
http://www.mindrot.org/mailman/listi...enssh-unix-dev
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 09:15 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0