<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: openssh connect problem in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057732#M908060</link>
    <description>Quick solver. I've run into this just yesterday.&lt;BR /&gt;&lt;BR /&gt;Edit your sshd_config file and change the line&lt;BR /&gt;&lt;BR /&gt;#UsePrivilegeSeparation yes&lt;BR /&gt;&lt;BR /&gt;to &lt;BR /&gt;&lt;BR /&gt;UsePrivilegeSeparation no&lt;BR /&gt;&lt;BR /&gt;Then, restart sshd. You should be able to login. I'm saying you this because the published patch didn't solve my problems.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;Paulo Fessel</description>
    <pubDate>Thu, 28 Aug 2003 13:09:35 GMT</pubDate>
    <dc:creator>Paulo A G Fessel</dc:creator>
    <dc:date>2003-08-28T13:09:35Z</dc:date>
    <item>
      <title>openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057726#M908054</link>
      <description>I am having the same problem as the following post but I do not understand why.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0x3388227a6ab4d711900a0090279cd0f9,00.html" target="_blank"&gt;http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0x3388227a6ab4d711900a0090279cd0f9,00.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;This post was a while back and it indicates a different version of openssh than the one I am using. Which according to this post is supposed to be a "known good binary version".&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0xcada68da2286d711abdc0090277a778c,00.html" target="_blank"&gt;http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0xcada68da2286d711abdc0090277a778c,00.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I do not understand that "the problem is not with the HP Box" but with ssh indicating that it might be the client but I do not understand how that could be.  At any rate, I do not have access to a machine to compile the patch.  &lt;BR /&gt;&lt;BR /&gt;Has anyone else run into this problem?  I have to believe it is a configuration problem.</description>
      <pubDate>Wed, 27 Aug 2003 12:05:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057726#M908054</guid>
      <dc:creator>Bill Jenkins_1</dc:creator>
      <dc:date>2003-08-27T12:05:23Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057727#M908055</link>
      <description>The patch programm is not part of the base OS.&lt;BR /&gt;You can download it from &lt;BR /&gt;&lt;A href="http://big.asknet.de/hppd/hpux/Sysadmin/patch-2.5.4/" target="_blank"&gt;http://big.asknet.de/hppd/hpux/Sysadmin/patch-2.5.4/&lt;/A&gt;&lt;BR /&gt;( the 11.00 version will work for 11.11, too)&lt;BR /&gt;&lt;BR /&gt;If it not works try the ssh client from HP.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=T1471AA" target="_blank"&gt;http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=T1471AA&lt;/A&gt; &lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;  Roland</description>
      <pubDate>Wed, 27 Aug 2003 12:46:22 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057727#M908055</guid>
      <dc:creator>RolandH</dc:creator>
      <dc:date>2003-08-27T12:46:22Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057728#M908056</link>
      <description>It might actually be a problem on your HP box.  If you are running a compiled version of openssh instead of...&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=T1471AA" target="_blank"&gt;http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProductInfo.pl?productNumber=T1471AA&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;You might not have pam integration correct.&lt;BR /&gt;&lt;BR /&gt;You also might want to check this:&lt;BR /&gt;&lt;BR /&gt;swlist -l product | grep -i pam&lt;BR /&gt;&lt;BR /&gt;Make sure pam is installed on the HP-UX box.  If not, its on the Application CD's and available at http:/software.hp.com&lt;BR /&gt;&lt;BR /&gt;SEP&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 27 Aug 2003 12:51:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057728#M908056</guid>
      <dc:creator>Steven E. Protter</dc:creator>
      <dc:date>2003-08-27T12:51:51Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057729#M908057</link>
      <description>Have you installed the patches&lt;BR /&gt;PHCO_24839 or&lt;BR /&gt;PHCO_27037&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Check this.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;  Roland</description>
      <pubDate>Wed, 27 Aug 2003 13:02:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057729#M908057</guid>
      <dc:creator>RolandH</dc:creator>
      <dc:date>2003-08-27T13:02:05Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057730#M908058</link>
      <description>I used this patch (that I downloaded from a forum somewehere near here) and it cured all my PAM problems:&lt;BR /&gt;&lt;BR /&gt;================&lt;BR /&gt;&lt;BR /&gt;cat &amp;gt; hp_pam.patch&lt;BR /&gt;&lt;BR /&gt;                diff -r -c openssh-3.4p1/auth-pam.c openssh-3.4p1-dw/auth-pam.c&lt;BR /&gt;*** openssh-3.4p1/auth-pam.c    Tue May  7 21:27:56 2002&lt;BR /&gt;--- openssh-3.4p1-dw/auth-pam.c Mon Jul 15 15:37:57 2002&lt;BR /&gt;***************&lt;BR /&gt;*** 294,299 ****&lt;BR /&gt;--- 294,311 ----&lt;BR /&gt;        session_opened = 1;&lt;BR /&gt;  }&lt;BR /&gt;&lt;BR /&gt;+ /* Set the TTY after session is open */&lt;BR /&gt;+ void do_pam_set_tty(const char *ttyname) {&lt;BR /&gt;+       int pam_retval;&lt;BR /&gt;+       if (ttyname != NULL) {&lt;BR /&gt;+               debug("PAM setting tty to \"%.200s\"", ttyname);&lt;BR /&gt;+               pam_retval = pam_set_item(__pamh, PAM_TTY, ttyname);&lt;BR /&gt;+               if (pam_retval != PAM_SUCCESS)&lt;BR /&gt;+                       fatal("PAM set tty failed[%d]: %.200s",&lt;BR /&gt;+                           pam_retval, PAM_STRERROR(__pamh, pam_retval));&lt;BR /&gt;+       }&lt;BR /&gt;+ }&lt;BR /&gt;+&lt;BR /&gt;  /* Set PAM credentials */&lt;BR /&gt;  void do_pam_setcred(int init)&lt;BR /&gt;  {&lt;BR /&gt;diff -r -c openssh-3.4p1/auth-pam.h openssh-3.4p1-dw/auth-pam.h&lt;BR /&gt;*** openssh-3.4p1/auth-pam.h    Thu Apr  4 13:02:28 2002&lt;BR /&gt;--- openssh-3.4p1-dw/auth-pam.h Mon Jul 15 15:36:34 2002&lt;BR /&gt;***************&lt;BR /&gt;*** 12,17 ****&lt;BR /&gt;--- 12,18 ----&lt;BR /&gt;  int do_pam_authenticate(int flags);&lt;BR /&gt;  int do_pam_account(char *username, char *remote_user);&lt;BR /&gt;  void do_pam_session(char *username, const char *ttyname);&lt;BR /&gt;+ void do_pam_set_tty(const char *ttyname);&lt;BR /&gt;  void do_pam_setcred(int init);&lt;BR /&gt;  void print_pam_messages(void);&lt;BR /&gt;  int is_pam_password_change_required(void);&lt;BR /&gt;diff -r -c openssh-3.4p1/session.c openssh-3.4p1-dw/session.c&lt;BR /&gt;*** openssh-3.4p1/session.c     Wed Jun 26 08:51:06 2002&lt;BR /&gt;--- openssh-3.4p1-dw/session.c  Tue Jul 16 07:52:35 2002&lt;BR /&gt;***************&lt;BR /&gt;*** 461,467 ****&lt;BR /&gt;        session_proctitle(s);&lt;BR /&gt;&lt;BR /&gt;  #if defined(USE_PAM)&lt;BR /&gt;-       do_pam_session(s-&amp;gt;pw-&amp;gt;pw_name, NULL);&lt;BR /&gt;        do_pam_setcred(1);&lt;BR /&gt;        if (is_pam_password_change_required())&lt;BR /&gt;                packet_disconnect("Password change required but no "&lt;BR /&gt;--- 461,466 ----&lt;BR /&gt;***************&lt;BR /&gt;*** 579,585 ****&lt;BR /&gt;        ttyfd = s-&amp;gt;ttyfd;&lt;BR /&gt;&lt;BR /&gt;  #if defined(USE_PAM)&lt;BR /&gt;!       do_pam_session(s-&amp;gt;pw-&amp;gt;pw_name, s-&amp;gt;tty);&lt;BR /&gt;        do_pam_setcred(1);&lt;BR /&gt;  #endif&lt;BR /&gt;&lt;BR /&gt;--- 578,584 ----&lt;BR /&gt;        ttyfd = s-&amp;gt;ttyfd;&lt;BR /&gt;&lt;BR /&gt;  #if defined(USE_PAM)&lt;BR /&gt;!       do_pam_set_tty(s-&amp;gt;tty);&lt;BR /&gt;        do_pam_setcred(1);&lt;BR /&gt;  #endif&lt;BR /&gt;&lt;BR /&gt;***************&lt;BR /&gt;*** 1204,1209 ****&lt;BR /&gt;--- 1203,1215 ----&lt;BR /&gt;                 * Reestablish them here.&lt;BR /&gt;                 */&lt;BR /&gt;                do_pam_setcred(0);&lt;BR /&gt;+&lt;BR /&gt;+               /*&lt;BR /&gt;+                * We need to open the session here because PAM on HP-UX does not&lt;BR /&gt;+                * work after the call to permanently_set_uid.&lt;BR /&gt;+                */&lt;BR /&gt;+               do_pam_session(pw-&amp;gt;pw_name,NULL);&lt;BR /&gt;+&lt;BR /&gt;  # endif /* USE_PAM */&lt;BR /&gt;  # if defined(WITH_IRIX_PROJECT) || defined(WITH_IRIX_JOBS) || defined(WITH_IRIX_ARRAY)&lt;BR /&gt;                irix_setusercontext(pw);&lt;BR /&gt;&lt;BR /&gt;======================&lt;BR /&gt;&lt;BR /&gt;Now patch the source-code as follows: patch ???p1 &amp;lt; hp_pam.patch&lt;BR /&gt;&lt;BR /&gt;To do the compile I used:&lt;BR /&gt;&lt;BR /&gt;cat &amp;gt; make_ssh&lt;BR /&gt;if [[ -r ./config.status ]] ; then&lt;BR /&gt;        rm ./config.status&lt;BR /&gt;fi&lt;BR /&gt;&lt;BR /&gt;sh ./configure --prefix=/usr/local --sysconfdir=/usr/local/etc --with-tcp-wrappers --with-pid-dir=/var/run/sudo --with-ssl-dir=/usr/local/ssl --with-authenticate --with-logging=file --with-goodpri=info --with-badpri=warning --without-mail-if-no-user --with-passprompt="Enter Your Password: " --with-umask=027 --with-timeout=5 --with-password-timeout=1 -tempdir=/var/tmp ???disable-suid-ssh  --with-chroot --without-scard  --disable-root-sudo | tee /tmp/sshbuild.log &amp;amp;&amp;amp; make &amp;amp;&amp;amp; make install-nokeys&lt;BR /&gt;&lt;BR /&gt;====&lt;BR /&gt;&lt;BR /&gt;Run sh make_ssh, et viola!&lt;BR /&gt;&lt;BR /&gt;Good luck,&lt;BR /&gt;Andrew&lt;BR /&gt;</description>
      <pubDate>Thu, 28 Aug 2003 05:55:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057730#M908058</guid>
      <dc:creator>Andrew Cowan</dc:creator>
      <dc:date>2003-08-28T05:55:07Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057731#M908059</link>
      <description>I appreciate the answers here.  The System Admin and myself will need to consider how we will proceed.  I am leaning toward using the HP ssh server.&lt;BR /&gt;&lt;BR /&gt;I will update the thread with the action we took.</description>
      <pubDate>Thu, 28 Aug 2003 13:03:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057731#M908059</guid>
      <dc:creator>Bill Jenkins_1</dc:creator>
      <dc:date>2003-08-28T13:03:31Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057732#M908060</link>
      <description>Quick solver. I've run into this just yesterday.&lt;BR /&gt;&lt;BR /&gt;Edit your sshd_config file and change the line&lt;BR /&gt;&lt;BR /&gt;#UsePrivilegeSeparation yes&lt;BR /&gt;&lt;BR /&gt;to &lt;BR /&gt;&lt;BR /&gt;UsePrivilegeSeparation no&lt;BR /&gt;&lt;BR /&gt;Then, restart sshd. You should be able to login. I'm saying you this because the published patch didn't solve my problems.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;Paulo Fessel</description>
      <pubDate>Thu, 28 Aug 2003 13:09:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057732#M908060</guid>
      <dc:creator>Paulo A G Fessel</dc:creator>
      <dc:date>2003-08-28T13:09:35Z</dc:date>
    </item>
    <item>
      <title>Re: openssh connect problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057733#M908061</link>
      <description>We converted to HP's distribution of ssh and haven't had a problem since.</description>
      <pubDate>Thu, 28 Aug 2003 22:21:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/openssh-connect-problem/m-p/3057733#M908061</guid>
      <dc:creator>Sorrel G. Jakins</dc:creator>
      <dc:date>2003-08-28T22:21:07Z</dc:date>
    </item>
  </channel>
</rss>

