<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Password-less ssh no longer works after upgrade in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022225#M729706</link>
    <description>&lt;P&gt;&amp;gt; And now ssh does not seem to recognize the id_dsa, even with the -i&lt;BR /&gt;&amp;gt; option.&amp;nbsp; It keeps asking for a password.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; uname -a&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Is this system the ssh client, server, or both?&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Does this new version require new private keys?&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; I haven't upgraded anything lately, so I know nothing, but...&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Which "this new version"?&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ssh -V&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Recent ssh versions might have deprecated/desupported particular&lt;BR /&gt;encryption or hash algorithms.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Generally, the debug procedure for the ssh client side involves&lt;BR /&gt;adding a "-v" option ("-vvv" seems to be popular) to the "ssh" command,&lt;BR /&gt;and seeking clues in the diagnostic output.&amp;nbsp; On the server side, the&lt;BR /&gt;system log files typically show reasons for a failure.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; And it was just upgraded to [...]&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; What, exactly, did you install?&amp;nbsp; Did whatever you installed come with&lt;BR /&gt;any documentation?&amp;nbsp; Release notes, for example?&lt;/P&gt;</description>
    <pubDate>Thu, 18 Oct 2018 03:01:34 GMT</pubDate>
    <dc:creator>Steven Schweda</dc:creator>
    <dc:date>2018-10-18T03:01:34Z</dc:date>
    <item>
      <title>Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022209#M729705</link>
      <description>&lt;P&gt;We were running this ssh (found in&amp;nbsp;/opt/ssh/hpux64/bin/)&lt;/P&gt;&lt;P&gt;-rwxr-xr-x&amp;nbsp; &amp;nbsp;1 bin&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; bin&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1330600 Jan&amp;nbsp; 7&amp;nbsp; 2015 ssh*&lt;/P&gt;&lt;P&gt;And it was just upgraded to (found in same location)&lt;/P&gt;&lt;P&gt;-rwxr-xr-x&amp;nbsp; &amp;nbsp;1 bin&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; bin&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1942744 Mar 19&amp;nbsp; 2018 ssh*&lt;/P&gt;&lt;P&gt;And now ssh does not seem to recognize the id_dsa, even with the -i option.&amp;nbsp; It keeps asking for a password.&lt;/P&gt;&lt;P&gt;Does this new version require new private keys?&lt;/P&gt;</description>
      <pubDate>Wed, 17 Oct 2018 20:29:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022209#M729705</guid>
      <dc:creator>RockA</dc:creator>
      <dc:date>2018-10-17T20:29:03Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022225#M729706</link>
      <description>&lt;P&gt;&amp;gt; And now ssh does not seem to recognize the id_dsa, even with the -i&lt;BR /&gt;&amp;gt; option.&amp;nbsp; It keeps asking for a password.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; uname -a&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Is this system the ssh client, server, or both?&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Does this new version require new private keys?&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; I haven't upgraded anything lately, so I know nothing, but...&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Which "this new version"?&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ssh -V&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Recent ssh versions might have deprecated/desupported particular&lt;BR /&gt;encryption or hash algorithms.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Generally, the debug procedure for the ssh client side involves&lt;BR /&gt;adding a "-v" option ("-vvv" seems to be popular) to the "ssh" command,&lt;BR /&gt;and seeking clues in the diagnostic output.&amp;nbsp; On the server side, the&lt;BR /&gt;system log files typically show reasons for a failure.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; And it was just upgraded to [...]&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; What, exactly, did you install?&amp;nbsp; Did whatever you installed come with&lt;BR /&gt;any documentation?&amp;nbsp; Release notes, for example?&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 03:01:34 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022225#M729706</guid>
      <dc:creator>Steven Schweda</dc:creator>
      <dc:date>2018-10-18T03:01:34Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022313#M729707</link>
      <description>&lt;P&gt;Thanks for the reply, Steven!&lt;/P&gt;&lt;P&gt;It is the client that cannot connect to the server.&lt;/P&gt;&lt;P&gt;uname -a&lt;/P&gt;&lt;P&gt;HP-UX&amp;nbsp;&amp;lt;server&amp;gt; B.11.31 U ia64 0545442868 unlimited-user license&lt;/P&gt;&lt;P&gt;The old version was:&lt;/P&gt;&lt;P&gt;OpenSSH_6.2p2+sftpfilecontrol-v1.3-hpn13v12, OpenSSL 1.0.2k 26 Jan 2017&lt;BR /&gt;HP-UX Secure Shell-A.06.20.030, HP-UX Secure Shell version&lt;/P&gt;&lt;P&gt;The new version is:&lt;/P&gt;&lt;P&gt;OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12, OpenSSL 1.0.2k 26 Jan 2017&lt;BR /&gt;HP-UX Secure Shell-A.07.40.003, HP-UX Secure Shell version&lt;/P&gt;&lt;P&gt;The install was done by our central operations team.&lt;/P&gt;&lt;P&gt;Here's the ssh -v output:&lt;/P&gt;&lt;P&gt;OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12, OpenSSL 1.0.2k 26 Jan 2017&lt;BR /&gt;debug1: Reading configuration data /opt/ssh/etc/ssh_config&lt;BR /&gt;debug1: Connecting to genawa-itg.austin.hpecorp.net [16.195.80.156] port 22.&lt;BR /&gt;debug1: Connection established.&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/identity type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/identity-cert type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_rsa type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_rsa-cert type -1&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_dsa type 2&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_dsa-cert type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_ecdsa type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_ecdsa-cert type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_ed25519 type -1&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_ed25519-cert type -1&lt;BR /&gt;debug1: Remote protocol version 2.0, remote software version OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12&lt;BR /&gt;debug1: match: OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12 pat OpenSSH* compat 0x04000000&lt;BR /&gt;debug1: Enabling compatibility mode for protocol 2.0&lt;BR /&gt;debug1: Local version string SSH-2.0-OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12&lt;BR /&gt;debug1: Authenticating to genawa-itg.austin.hpecorp.net:22 as 'tuxadmin'&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT sent&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT received&lt;BR /&gt;debug1: AUTH STATE IS 0&lt;BR /&gt;debug1: kex: algorithm: curve25519-sha256&lt;BR /&gt;debug1: kex: host key algorithm: ecdsa-sha2-nistp256&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'chacha20-poly1305@openssh.com'&lt;BR /&gt;debug1: kex: server-&amp;gt;client cipher: chacha20-poly1305@openssh.com MAC: &amp;lt;implicit&amp;gt; compression: none&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'chacha20-poly1305@openssh.com'&lt;BR /&gt;debug1: kex: client-&amp;gt;server cipher: chacha20-poly1305@openssh.com MAC: &amp;lt;implicit&amp;gt; compression: none&lt;BR /&gt;debug1: expecting SSH2_MSG_KEX_ECDH_REPLY&lt;BR /&gt;debug1: Server host key: ecdsa-sha2-nistp256 SHA256:EE87R0FOpAeS6e76QbXqn77ti2qKO3bmFEyzZ3ybWjk&lt;BR /&gt;debug1: Host 'genawa-itg.austin.hpecorp.net' is known and matches the ECDSA host key.&lt;BR /&gt;debug1: Found key in /home/bb/.ssh/known_hosts:5&lt;BR /&gt;debug1: rekey after 134217728 blocks&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS sent&lt;BR /&gt;debug1: expecting SSH2_MSG_NEWKEYS&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS received&lt;BR /&gt;debug1: rekey after 134217728 blocks&lt;BR /&gt;debug1: Skipping ssh-dss key /home/bb/.ssh/id_dsa - not in PubkeyAcceptedKeyTypes&lt;BR /&gt;debug1: SSH2_MSG_EXT_INFO received&lt;BR /&gt;debug1: kex_input_ext_info: server-sig-algs=&amp;lt;ssh-ed25519,ssh-rsa,ssh-dss,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521&amp;gt;&lt;BR /&gt;debug1: SSH2_MSG_SERVICE_ACCEPT received&lt;BR /&gt;*******************************************************************&lt;BR /&gt;* *&lt;BR /&gt;* This is a private system; explicit authorization from the *&lt;BR /&gt;* system owner is required for access or use. Unauthorized *&lt;BR /&gt;* access or use may result in severe civil and/or criminal *&lt;BR /&gt;* liability, including without limitation under 18 USC *&lt;BR /&gt;* Sections 1030 et seq. All rights whatsoever are reserved. *&lt;BR /&gt;* *&lt;BR /&gt;*******************************************************************&lt;BR /&gt;debug1: Authentications that can continue: publickey,gssapi-with-mic,password&lt;BR /&gt;debug1: Next authentication method: gssapi-with-mic&lt;BR /&gt;debug1: Miscellaneous failure&lt;BR /&gt;No credentials cache found&lt;/P&gt;&lt;P&gt;debug1: Miscellaneous failure&lt;BR /&gt;No credentials cache found&lt;/P&gt;&lt;P&gt;debug1:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;debug1: Next authentication method: publickey&lt;BR /&gt;debug1: Trying private key: /home/bb/.ssh/identity&lt;BR /&gt;debug1: Trying private key: /home/bb/.ssh/id_rsa&lt;BR /&gt;debug1: Trying private key: /home/bb/.ssh/id_ecdsa&lt;BR /&gt;debug1: Trying private key: /home/bb/.ssh/id_ed25519&lt;BR /&gt;debug1: Next authentication method: password&lt;BR /&gt;&amp;lt;account&amp;gt;@&amp;lt;fqdn&amp;gt;s password:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I use the -i option to call out the public key location:&lt;/P&gt;&lt;P&gt;OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12, OpenSSL 1.0.2k 26 Jan 2017&lt;BR /&gt;debug1: Reading configuration data /opt/ssh/etc/ssh_config&lt;BR /&gt;debug1: Connecting to genawa-itg.austin.hpecorp.net [16.195.80.156] port 22.&lt;BR /&gt;debug1: Connection established.&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_dsa type 2&lt;BR /&gt;debug1: key_load_public: No such file or directory&lt;BR /&gt;debug1: identity file /home/bb/.ssh/id_dsa-cert type -1&lt;BR /&gt;debug1: Remote protocol version 2.0, remote software version OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12&lt;BR /&gt;debug1: match: OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12 pat OpenSSH* compat 0x04000000&lt;BR /&gt;debug1: Enabling compatibility mode for protocol 2.0&lt;BR /&gt;debug1: Local version string SSH-2.0-OpenSSH_7.4p1+sftpfilecontrol-v1.3-hpn14v12&lt;BR /&gt;debug1: Authenticating to genawa-itg.austin.hpecorp.net:22 as 'tuxadmin'&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT sent&lt;BR /&gt;debug1: SSH2_MSG_KEXINIT received&lt;BR /&gt;debug1: AUTH STATE IS 0&lt;BR /&gt;debug1: kex: algorithm: curve25519-sha256&lt;BR /&gt;debug1: kex: host key algorithm: ecdsa-sha2-nistp256&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'chacha20-poly1305@openssh.com'&lt;BR /&gt;debug1: kex: server-&amp;gt;client cipher: chacha20-poly1305@openssh.com MAC: &amp;lt;implicit&amp;gt; compression: none&lt;BR /&gt;debug1: REQUESTED ENC.NAME is 'chacha20-poly1305@openssh.com'&lt;BR /&gt;debug1: kex: client-&amp;gt;server cipher: chacha20-poly1305@openssh.com MAC: &amp;lt;implicit&amp;gt; compression: none&lt;BR /&gt;debug1: expecting SSH2_MSG_KEX_ECDH_REPLY&lt;BR /&gt;debug1: Server host key: ecdsa-sha2-nistp256 SHA256:EE87R0FOpAeS6e76QbXqn77ti2qKO3bmFEyzZ3ybWjk&lt;BR /&gt;debug1: Host 'genawa-itg.austin.hpecorp.net' is known and matches the ECDSA host key.&lt;BR /&gt;debug1: Found key in /home/bb/.ssh/known_hosts:5&lt;BR /&gt;debug1: rekey after 134217728 blocks&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS sent&lt;BR /&gt;debug1: expecting SSH2_MSG_NEWKEYS&lt;BR /&gt;debug1: SSH2_MSG_NEWKEYS received&lt;BR /&gt;debug1: rekey after 134217728 blocks&lt;BR /&gt;debug1: Skipping ssh-dss key /home/bb/.ssh/id_dsa - not in PubkeyAcceptedKeyTypes&lt;BR /&gt;debug1: SSH2_MSG_EXT_INFO received&lt;BR /&gt;debug1: kex_input_ext_info: server-sig-algs=&amp;lt;ssh-ed25519,ssh-rsa,ssh-dss,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521&amp;gt;&lt;BR /&gt;debug1: SSH2_MSG_SERVICE_ACCEPT received&lt;BR /&gt;*******************************************************************&lt;BR /&gt;* *&lt;BR /&gt;* This is a private system; explicit authorization from the *&lt;BR /&gt;* system owner is required for access or use. Unauthorized *&lt;BR /&gt;* access or use may result in severe civil and/or criminal *&lt;BR /&gt;* liability, including without limitation under 18 USC *&lt;BR /&gt;* Sections 1030 et seq. All rights whatsoever are reserved. *&lt;BR /&gt;* *&lt;BR /&gt;*******************************************************************&lt;BR /&gt;debug1: Authentications that can continue: publickey,gssapi-with-mic,password&lt;BR /&gt;debug1: Next authentication method: gssapi-with-mic&lt;BR /&gt;debug1: Miscellaneous failure&lt;BR /&gt;No credentials cache found&lt;/P&gt;&lt;P&gt;debug1: Miscellaneous failure&lt;BR /&gt;No credentials cache found&lt;/P&gt;&lt;P&gt;debug1:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;debug1: Next authentication method: publickey&lt;BR /&gt;debug1: Next authentication method: password&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;account&amp;gt;&lt;/SPAN&gt;&lt;SPAN&gt;@&lt;/SPAN&gt;&lt;SPAN&gt;&amp;lt;fqdn&amp;gt;&lt;/SPAN&gt;'s password:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have checked that the authorized_key file on the receiving end&amp;nbsp;still contains the content of the id_dsa.pub.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The .ssh directory is secured as follows:&lt;/P&gt;&lt;P&gt;drwx------&amp;nbsp; &amp;nbsp;2 bb&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;bbgrp&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;96 Jun 10&amp;nbsp; 2017 .ssh/&lt;/P&gt;&lt;P&gt;the id_dsa file is secured as follows:&lt;/P&gt;&lt;P&gt;-rw------- 1 bb bbgrp 668 Sep 16 2016 id_dsa&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 13:29:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022313#M729707</guid>
      <dc:creator>RockA</dc:creator>
      <dc:date>2018-10-18T13:29:31Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022327#M729708</link>
      <description>&lt;P&gt;&amp;gt; It is the client that cannot connect to the server.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Yes, by definition, but who got the SSH upgrade?&lt;BR /&gt;&lt;BR /&gt;&amp;gt; The install was done by our central operations team.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Ok, but you may still need to know more than that.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; I still know nothing, but:&lt;BR /&gt;&lt;BR /&gt;debug1: Skipping ssh-dss key /home/bb/.ssh/id_dsa - not in PubkeyAcceptedKeyTypes&lt;BR /&gt;debug1: SSH2_MSG_EXT_INFO received&lt;BR /&gt;debug1: kex_input_ext_info:&lt;BR /&gt;server-sig-algs=&amp;lt;ssh-ed25519,ssh-rsa,ssh-dss,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521&amp;gt;&lt;BR /&gt;debug1: SSH2_MSG_SERVICE_ACCEPT received&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Apparently, the server is now more restrctive about its&lt;BR /&gt;PubkeyAcceptedKeyTypes.&amp;nbsp; I'd guess that the server configuration could&lt;BR /&gt;be degraded to accept your old keys, but I'd also guess that such old&lt;BR /&gt;keys are now considered too weak.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 16:35:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022327#M729708</guid>
      <dc:creator>Steven Schweda</dc:creator>
      <dc:date>2018-10-18T16:35:18Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022328#M729709</link>
      <description>&lt;P&gt;Hi Steven,&lt;/P&gt;&lt;P&gt;The upgrade was the client only.&amp;nbsp; I'll try re-creating the public key.&amp;nbsp; Thanks for your help!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 17:06:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022328#M729709</guid>
      <dc:creator>RockA</dc:creator>
      <dc:date>2018-10-18T17:06:31Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022329#M729710</link>
      <description>&lt;P&gt;&amp;gt; The upgrade was the client only. [...]&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Hmmm.&amp;nbsp; I'd've blamed the server, but what do I know?&lt;BR /&gt;&lt;BR /&gt;&amp;gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; I still know nothing, but:&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; I may be learning:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;A href="https://h20392.www2.hpe.com/portal/swdepot/displayProductInfo.do?productNumber=T1471AA" target="_blank"&gt;https://h20392.www2.hpe.com/portal/swdepot/displayProductInfo.do?productNumber=T1471AA&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; * Going forward DSA host keys will be disabled and it is&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; recommended not to use. To support DSA host keys in v.07.30 and&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; above, an extra parameter (HostKeyAlgorithms) in sshd_config file.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; For more information, see &lt;A href="https://www.openssh.com/legacy.html" target="_blank"&gt;https://www.openssh.com/legacy.html&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 17:24:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022329#M729710</guid>
      <dc:creator>Steven Schweda</dc:creator>
      <dc:date>2018-10-18T17:24:47Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022352#M729711</link>
      <description>&lt;P&gt;Thanks, Steven!&amp;nbsp; I'll give that a try...&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 22:14:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022352#M729711</guid>
      <dc:creator>RockA</dc:creator>
      <dc:date>2018-10-18T22:14:48Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022867#M729712</link>
      <description>&lt;P&gt;Many thanks for the link, Steven!&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What worked was adding&amp;nbsp;-oPubkeyAcceptedKeyTypes=+ssh-dss to the ssh command.&lt;/P&gt;</description>
      <pubDate>Tue, 23 Oct 2018 13:03:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022867#M729712</guid>
      <dc:creator>RockA</dc:creator>
      <dc:date>2018-10-23T13:03:01Z</dc:date>
    </item>
    <item>
      <title>Re: Password-less ssh no longer works after upgrade</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022954#M729713</link>
      <description>&lt;P&gt;&amp;gt; What worked was adding -oPubkeyAcceptedKeyTypes=+ssh-dss to the ssh&lt;BR /&gt;&amp;gt; command.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; You might be able to save some typing by adding that option to the&lt;BR /&gt;user's "~/.ssh/config" file (or system-wide in&lt;BR /&gt;"/opt/ssh/etc/ssh_config").&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; man ssh_config&lt;/P&gt;</description>
      <pubDate>Tue, 23 Oct 2018 19:32:09 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/password-less-ssh-no-longer-works-after-upgrade/m-p/7022954#M729713</guid>
      <dc:creator>Steven Schweda</dc:creator>
      <dc:date>2018-10-23T19:32:09Z</dc:date>
    </item>
  </channel>
</rss>

