<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: problems configuring sftp in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600955#M375835</link>
    <description>I think you try to setup chrooted environment for sftp.&lt;BR /&gt;&lt;BR /&gt;Check the new open ssh versions new directive: ChrootDirectory&lt;BR /&gt;&lt;A href="http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417" target="_blank"&gt;http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417&lt;/A&gt;</description>
    <pubDate>Mon, 15 Mar 2010 16:57:26 GMT</pubDate>
    <dc:creator>Turgay Cavdar</dc:creator>
    <dc:date>2010-03-15T16:57:26Z</dc:date>
    <item>
      <title>problems configuring sftp</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600954#M375834</link>
      <description>Hi guys.&lt;BR /&gt;&lt;BR /&gt;I do everything from instructions &lt;A href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;amp;cc=us&amp;amp;taskId=115&amp;amp;prodSeriesId=3215373&amp;amp;prodTypeId=18964&amp;amp;objectID=c01516983" target="_blank"&gt;http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;amp;cc=us&amp;amp;taskId=115&amp;amp;prodSeriesId=3215373&amp;amp;prodTypeId=18964&amp;amp;objectID=c01516983&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I make&lt;BR /&gt;&lt;BR /&gt;[root @ server] # / opt / ssh / bin / sftp appuser @ server&lt;BR /&gt;Connecting to server ...&lt;BR /&gt;Password:&lt;BR /&gt;subsystem request failed on channel 0&lt;BR /&gt;Connection closed&lt;BR /&gt;[root @ server] # / opt / ssh / bin / sftp appuser @ server&lt;BR /&gt;Connecting to server ...&lt;BR /&gt;Password:&lt;BR /&gt;subsystem request failed on channel 0&lt;BR /&gt;Connection closed&lt;BR /&gt;[root @ server] # sftp-vvv appuser @ server&lt;BR /&gt;Connecting to server ...&lt;BR /&gt;OpenSSH_5.3p1 + sftpfilecontrol-v1.3-hpn13v5, OpenSSL 0.9.8h 28 May 2008&lt;BR /&gt;HP-UX Secure Shell-A.05.30.009, HP-UX Secure Shell version&lt;BR /&gt;debug1: Reading configuration data / opt / ssh / etc / ssh_config&lt;BR /&gt;debug3: RNG is ready, skipping seeding&lt;BR /&gt;debug2: ssh_connect: needpriv 0&lt;BR /&gt;debug1: Connecting to server [10.1.2.157] port 22.&lt;BR /&gt;debug1: Connection established.&lt;BR /&gt;debug1: permanently_set_uid: 0 / 3&lt;BR /&gt;debug1: identity file / .ssh / id_rsa type -1&lt;BR /&gt;debug1: identity file / .ssh / id_dsa type -1&lt;BR /&gt;debug1: Remote protocol version 2.0, remote software version OpenSSH_5.3p1 + sftpfilecontrol-v1.3-hpn13v5&lt;BR /&gt;debug1: match: OpenSSH_5.3p1 + sftpfilecontrol-v1.3-hpn13v5 pat OpenSSH *&lt;BR /&gt;debug1: Enabling compatibility mode for protocol 2.0&lt;BR /&gt;debug1: Local version string SSH-2.0-OpenSSH_5.3p1 + sftpfilecontrol-v1.3-hpn13v5&lt;BR /&gt;debug2: fd 4 setting O_NONBLOCK&lt;BR /&gt;debug3: RNG is ready, skipping seeding&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT sent&lt;BR /&gt;debug3: Wrote 792 bytes for a total of 844&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT received&lt;BR /&gt;debug1: AUTH STATE IS 0&lt;BR /&gt;debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha256, diffie-hellman-group-exchange-sha1, diffie-hellman-group14-sha1, diffie-hellman-group1-sha1&lt;BR /&gt;debug2: kex_parse_kexinit: ssh-rsa, ssh-dss&lt;BR /&gt;debug2: kex_parse_kexinit: aes128-ctr, aes192-ctr, aes256-ctr, arcfour256, arcfour128, aes128-cbc, 3des-cbc, blowfish-cbc, cast128-cbc, aes192-cbc, aes256-cbc, arcfour, rijndael-cbc @ lysator.liu.se&lt;BR /&gt;debug2: kex_parse_kexinit: aes128-ctr, aes192-ctr, aes256-ctr, arcfour256, arcfour128, aes128-cbc, 3des-cbc, blowfish-cbc, cast128-cbc, aes192-cbc, aes256-cbc, arcfour, rijndael-cbc @ lysator.liu.se&lt;BR /&gt;debug2: kex_parse_kexinit: hmac-md5, hmac-sha1, umac-64@openssh.com, hmac-ripemd160, hmac-ripemd160@openssh.com, hmac-sha1-96, hmac-md5-96&lt;BR /&gt;debug2: kex_parse_kexinit: hmac-md5, hmac-sha1, umac-64@openssh.com, hmac-ripemd160, hmac-ripemd160@openssh.com, hmac-sha1-96, hmac-md5-96&lt;BR /&gt;debug2: kex_parse_kexinit: none, zlib@openssh.com, zlib&lt;BR /&gt;debug2: kex_parse_kexinit: none, zlib@openssh.com, zlib&lt;BR /&gt;debug2: kex_parse_kexinit:&lt;BR /&gt;debug2: kex_parse_kexinit:&lt;BR /&gt;debug2: kex_parse_kexinit: first_kex_follows 0&lt;BR /&gt;debug2: kex_parse_kexinit: reserved 0&lt;BR /&gt;debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha256, diffie-hellman-group-exchange-sha1, diffie-hellman-group14-sha1, diffie-hellman-group1-sha1&lt;BR /&gt;debug2: kex_parse_kexinit: ssh-rsa, ssh-dss&lt;BR /&gt;debug2: kex_parse_kexinit: aes128-ctr, aes192-ctr, aes256-ctr, arcfour256, arcfour128, aes128-cbc, 3des-cbc, blowfish-cbc, cast128-cbc, aes192-cbc, aes256-cbc, arcfour, rijndael-cbc @ lysator.liu.se&lt;BR /&gt;debug2: kex_parse_kexinit: aes128-ctr, aes192-ctr, aes256-ctr, arcfour256, arcfour128, aes128-cbc, 3des-cbc, blowfish-cbc, cast128-cbc, aes192-cbc, aes256-cbc, arcfour, rijndael-cbc @ lysator.liu.se&lt;BR /&gt;debug2: kex_parse_kexinit: hmac-md5, hmac-sha1, umac-64@openssh.com, hmac-ripemd160, hmac-ripemd160@openssh.com, hmac-sha1-96, hmac-md5-96&lt;BR /&gt;debug2: kex_parse_kexinit: hmac-md5, hmac-sha1, umac-64@openssh.com, hmac-ripemd160, hmac-ripemd160@openssh.com, hmac-sha1-96, hmac-md5-96&lt;BR /&gt;debug2: kex_parse_kexinit: none, zlib@openssh.com&lt;BR /&gt;debug2: kex_parse_kexinit: none, zlib@openssh.com&lt;BR /&gt;debug2: kex_parse_kexinit:&lt;BR /&gt;debug2: kex_parse_kexinit:&lt;BR /&gt;debug2: kex_parse_kexinit: first_kex_follows 0&lt;BR /&gt;debug2: kex_parse_kexinit: reserved 0&lt;BR /&gt;debug2: mac_setup: found hmac-md5&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'aes128-ctr'&lt;BR /&gt;debug1: kex: server-&amp;gt; client aes128-ctr hmac-md5 none&lt;BR /&gt;debug2: mac_setup: found hmac-md5&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'aes128-ctr'&lt;BR /&gt;debug1: kex: client-&amp;gt; server aes128-ctr hmac-md5 none&lt;BR /&gt;debug1: SSH2_MSG_KEX_DH_GEX_REQUEST (1024 &amp;lt;1024 &amp;lt;8192) sent&lt;BR /&gt;debug1: expecting SSH2_MSG_KEX_DH_GEX_GROUP&lt;BR /&gt;debug3: Wrote 24 bytes for a total of 868&lt;BR /&gt;debug2: dh_gen_key: priv key bits set: 124/256&lt;BR /&gt;debug2: bits set: 512/1024&lt;BR /&gt;debug1: SSH2_MSG_KEX_DH_GEX_INIT sent&lt;BR /&gt;debug1: expecting SSH2_MSG_KEX_DH_GEX_REPLY&lt;BR /&gt;debug3: Wrote 144 bytes for a total of 1012&lt;BR /&gt;debug3: check_host_in_hostfile: filename / .ssh / known_hosts&lt;BR /&gt;debug3: check_host_in_hostfile: match line 1&lt;BR /&gt;debug3: check_host_in_hostfile: filename / .ssh / known_hosts&lt;BR /&gt;debug3: check_host_in_hostfile: match line 2&lt;BR /&gt;debug1: Host 'server' is known and matches the RSA host key.&lt;BR /&gt;debug1: Found key in / .ssh / known_hosts: 1&lt;BR /&gt;debug2: bits set: 505/1024&lt;BR /&gt;debug1: ssh_rsa_verify: signature correct&lt;BR /&gt;debug2: kex_derive_keys&lt;BR /&gt;debug2: set_newkeys: mode 1&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS sent&lt;BR /&gt;debug1: expecting SSH2_MSG_NEWKEYS&lt;BR /&gt;debug3: Wrote 16 bytes for a total of 1028&lt;BR /&gt;debug2: set_newkeys: mode 0&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS received&lt;BR /&gt;debug1: SSH2_MSG_SERVICE_REQUEST sent&lt;BR /&gt;debug3: Wrote 48 bytes for a total of 1076&lt;BR /&gt;debug2: service_accept: ssh-userauth&lt;BR /&gt;debug1: SSH2_MSG_SERVICE_ACCEPT received&lt;BR /&gt;debug2: key: / .ssh / id_rsa (0)&lt;BR /&gt;debug2: key: / .ssh / id_dsa (0)&lt;BR /&gt;debug3: Wrote 64 bytes for a total of 1140&lt;BR /&gt;debug1: Authentications that can continue: publickey, password, keyboard-interactive&lt;BR /&gt;debug3: start over, passed a different list publickey, password, keyboard-interactive&lt;BR /&gt;debug3: preferred publickey, keyboard-interactive, password&lt;BR /&gt;debug3: authmethod_lookup publickey&lt;BR /&gt;debug3: remaining preferred: keyboard-interactive, password&lt;BR /&gt;debug3: authmethod_is_enabled publickey&lt;BR /&gt;debug1: Next authentication method: publickey&lt;BR /&gt;debug1: Trying private key: / .ssh / id_rsa&lt;BR /&gt;debug3: no such identity: / .ssh / id_rsa&lt;BR /&gt;debug1: Trying private key: / .ssh / id_dsa&lt;BR /&gt;debug3: no such identity: / .ssh / id_dsa&lt;BR /&gt;debug2: we did not send a packet, disable method&lt;BR /&gt;debug3: authmethod_lookup keyboard-interactive&lt;BR /&gt;debug3: remaining preferred: password&lt;BR /&gt;debug3: authmethod_is_enabled keyboard-interactive&lt;BR /&gt;debug1: Next authentication method: keyboard-interactive&lt;BR /&gt;debug2: userauth_kbdint&lt;BR /&gt;debug2: we sent a keyboard-interactive packet, wait for reply&lt;BR /&gt;debug3: Wrote 96 bytes for a total of 1236&lt;BR /&gt;debug2: input_userauth_info_req&lt;BR /&gt;debug2: input_userauth_info_req: num_prompts 1&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;/ var / adm / syslog / syslog.log&lt;BR /&gt;Mar 15 17:27:13 server sshd [10347]: SSH: Server; Ltype: Version; Remote: 10.1.28.72-3785; Protocol: 2.0; Client: WinSCP_FAR_release_1.6.2&lt;BR /&gt;Mar 15 17:27:14 server sshd [10347]: Accepted keyboard-interactive/pam for root from 10.1.28.72 port 3785 ssh2&lt;BR /&gt;Mar 15 17:27:14 server sshd [10347]: subsystem request for sftp&lt;BR /&gt;Mar 15 17:27:14 server sshd [10347]: subsystem request for sftp failed, subsystem not found&lt;BR /&gt;Mar 15 17:27:14 server sshd [10347]: SSH: Server; LType: Throughput; Remote: 10.1.28.72-3785; IN: 644; OUT: 224; Duration: 0.0; tPut_in: 36722.1; tPut_out: 12772.9&lt;BR /&gt;Mar 15 17:27:16 server sshd [10350]: SSH: Server; Ltype: Version; Remote: 10.1.28.72-3786; Protocol: 2.0; Client: WinSCP_FAR_release_1.6.2&lt;BR /&gt;Mar 15 17:27:16 server sshd [10350]: Accepted keyboard-interactive/pam for root from 10.1.28.72 port 3786 ssh2&lt;BR /&gt;Mar 15 17:27:16 server sshd [10350]: subsystem request for sftp&lt;BR /&gt;Mar 15 17:27:16 server sshd [10350]: subsystem request for sftp failed, subsystem not found&lt;BR /&gt;Mar 15 17:27:16 server sshd [10350]: SSH: Server; LType: Throughput; Remote: 10.1.28.72-3786; IN: 580; OUT: 308; Duration: 0.0; tPut_in: 30712.0; tPut_out: 16309.1&lt;BR /&gt;Mar 15 17:27:24 server sshd [9233]: SSH: Server; LType: Throughput; Remote: 10.1.28.72-3647; IN: 19568; OUT: 5472; Duration: 2421.6; tPut_in: 8.1; tPut_out: 2.3&lt;BR /&gt;Mar 15 17:27:26 server sshd [10353]: SSH: Server; Ltype: Version; Remote: 10.1.28.72-3787; Protocol: 2.0; Client: SecureCRT_6.2.2 (build 263) SecureCRT&lt;BR /&gt;Mar 15 17:27:29 server sshd [10353]: Accepted password for root from 10.1.28.72 port 3787 ssh2&lt;BR /&gt;Mar 15 17:27:29 server sshd [10353]: SSH: Server; LType: Throughput; Remote: 10.1.28.72-3787; IN: 592; OUT: 320; Duration: 0.1; tPut_in: 9738.7; tPut_out: 5264.2&lt;BR /&gt;Mar 15 17:27:32 server sshd [10357]: SSH: Server; Ltype: Version; Remote: 10.1.28.72-3788; Protocol: 2.0; Client: SecureCRT_6.2.2 (build 263) SecureCRT&lt;BR /&gt;Mar 15 17:27:39 server sshd [10357]: Accepted password for root from 10.1.28.72 port 3788 ssh2&lt;BR /&gt;Mar 15 17:27:39 server sshd [10357]: SSH: Server; LType: Throughput; Remote: 10.1.28.72-3788; IN: 592; OUT: 320; Duration: 0.1; tPut_in: 8866.5; tPut_out: 4792.7&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;When you try to connect to a server via ssh&lt;BR /&gt;&lt;BR /&gt;[root @ server] # vi / etc / passwd&lt;BR /&gt;Last successful login: Mon Mar 15 17:27:16 WST 2010 10.1.28.72&lt;BR /&gt;Last authentication failure: Mon Mar 15 17:23:56 WST 2010&lt;BR /&gt;Last login: Mon Mar 15 16:47:03 2010 from 10.1.28.72&lt;BR /&gt;/ sbin / sh: No such file or directory&lt;BR /&gt;&lt;BR /&gt;This came after configuring sftp for instructions.&lt;BR /&gt;&lt;BR /&gt;[root @ erver] # cat / etc / passwd&lt;BR /&gt;&lt;BR /&gt;root: / aq9QjUajlNrA: 0:3 ::/:/ sbin / sh&lt;BR /&gt;appuser: QIYGAgLG6/y9c: 4000:20: chrooted user: / newroot / home / appuser: / bin / sh</description>
      <pubDate>Mon, 15 Mar 2010 13:36:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600954#M375834</guid>
      <dc:creator>Goriik</dc:creator>
      <dc:date>2010-03-15T13:36:18Z</dc:date>
    </item>
    <item>
      <title>Re: problems configuring sftp</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600955#M375835</link>
      <description>I think you try to setup chrooted environment for sftp.&lt;BR /&gt;&lt;BR /&gt;Check the new open ssh versions new directive: ChrootDirectory&lt;BR /&gt;&lt;A href="http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417" target="_blank"&gt;http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417&lt;/A&gt;</description>
      <pubDate>Mon, 15 Mar 2010 16:57:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600955#M375835</guid>
      <dc:creator>Turgay Cavdar</dc:creator>
      <dc:date>2010-03-15T16:57:26Z</dc:date>
    </item>
    <item>
      <title>Re: problems configuring sftp</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600956#M375836</link>
      <description>I think you try to setup chrooted environment for sftp.&lt;BR /&gt;&lt;BR /&gt;Check the new open ssh versions new directive: ChrootDirectory&lt;BR /&gt;&lt;A href="http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417" target="_blank"&gt;http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&amp;amp;docId=emr_na-c01711417&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I went to your link, but ..&lt;BR /&gt;&lt;BR /&gt;Note: We are sorry but the document you requested requires additional authorization such as a certain level of support agreement.&lt;BR /&gt;</description>
      <pubDate>Tue, 16 Mar 2010 05:27:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600956#M375836</guid>
      <dc:creator>Goriik</dc:creator>
      <dc:date>2010-03-16T05:27:06Z</dc:date>
    </item>
    <item>
      <title>Re: problems configuring sftp</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600957#M375837</link>
      <description>Problem solved. I added a few lines in / opt / ssh / etc / sshd_config&lt;BR /&gt;&lt;BR /&gt;Match User appuser&lt;BR /&gt;X11Forwarding no&lt;BR /&gt;AllowTcpForwarding no&lt;BR /&gt;ChrootDirectory /newroot</description>
      <pubDate>Tue, 16 Mar 2010 06:24:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600957#M375837</guid>
      <dc:creator>Goriik</dc:creator>
      <dc:date>2010-03-16T06:24:17Z</dc:date>
    </item>
    <item>
      <title>Re: problems configuring sftp</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600958#M375838</link>
      <description>yepp. man sshd_config:&lt;BR /&gt;&lt;BR /&gt;Match&lt;BR /&gt;     Introduces a conditional block.  If all of the criteria on the&lt;BR /&gt;     Match line are satisfied, the keywords on the following lines&lt;BR /&gt;     override those set in the global section of the config file,&lt;BR /&gt;     until either another Match line or the end of the file.  The&lt;BR /&gt;     arguments to Match are one or more criteria-pattern pairs.  The&lt;BR /&gt;     available criteria are User, Group, Host, and Address.  Only a&lt;BR /&gt;     subset of keywords may be used on the lines following a Match&lt;BR /&gt;     keyword.  Available keywords are AllowTcpForwarding,&lt;BR /&gt;     ForceCommand, GatewayPorts, PermitOpen, X11DisplayOffset,&lt;BR /&gt;     X11Forwarding, and X11UseLocalHost.</description>
      <pubDate>Tue, 16 Mar 2010 08:41:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/problems-configuring-sftp/m-p/4600958#M375838</guid>
      <dc:creator>Viktor Balogh</dc:creator>
      <dc:date>2010-03-16T08:41:27Z</dc:date>
    </item>
  </channel>
</rss>

