- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: ssh and telnet
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-27-2006 08:08 PM
11-27-2006 08:08 PM
ssh and telnet
I have unix 11.23 server called db6 and db7. Installed ssh to these 2 servers.
telnet service still on.
From another windows server under same segment I can use putty and winscp to this db6 and db7.
But from each db6 and db7 I can't telnet each other.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-27-2006 08:11 PM
11-27-2006 08:11 PM
Re: ssh and telnet
regards,
ivan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-27-2006 08:31 PM
11-27-2006 08:31 PM
Re: ssh and telnet
error log found at syslog.log
Nov 28 16:15:11 db6 telnetd[8803]: Time out occurred in the initial option negotiation
Nov 28 16:19:10 db6 sshd[8816]: fatal: Timeout before authentication for 10.x.x.xx
Nov 28 17:11:30 db6 sshd[8988]: Accepted keyboard-interactive/pam for root from 10.x.x.xx port 1082 ssh2
Nov 28 17:11:30 db6 sshd[8988]: subsystem request for sftp
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-27-2006 09:56 PM
11-27-2006 09:56 PM
Re: ssh and telnet
consider applying patch PHNE_33724
Patch Description: s700_800 11.23 telnet kernel, telnetd(1M), telnet(1) patch
also, if you are moving towards, a more secured environment, you may as well stop using telnet and use ssh to login to the server.
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 12:23 AM
11-28-2006 12:23 AM
Re: ssh and telnet
When you try and telnet between the servers, do you get an error or does it just "hang" there?
As mentioned above, I would consider not using the insecure telnet at all and switch to ssh seeing as you have it installed.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 12:59 PM
11-28-2006 12:59 PM
Re: ssh and telnet
But curently I need to find the reason why i can't telnet from each other.
Error appear as :
trying ...
telnet: unable to connect to remote host. connection refused.
I am going to install the patch as requested 1st.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 01:06 PM
11-28-2006 01:06 PM
Re: ssh and telnet
a)can you ping ?
b)can u ftp between them?
Regds,
Kaps
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 03:32 PM
11-28-2006 03:32 PM
Re: ssh and telnet
db6 and db7 in same segment. From unix and windows server in the same segment can telnet and ftp to both servers.
The problem is only from db6 to db7 and the other way around can't telnet and ftp each other but ping reply.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 03:40 PM
11-28-2006 03:40 PM
Re: ssh and telnet
on db6,
do: telnet localhost
on db7,
do: telnet localhost
are you able to get the login prompt?
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 03:48 PM
11-28-2006 03:48 PM
Re: ssh and telnet
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 04:31 PM
11-28-2006 04:31 PM
Re: ssh and telnet
Please confirm that you have also tried:
telnet
and this too does not work...
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 05:12 PM
11-28-2006 05:12 PM
Re: ssh and telnet
It seems your two servers are not in same subnet or having some routing issue. Please verify that you are able to ping from each other OR ssh to each other is working?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 06:19 PM
11-28-2006 06:19 PM
Re: ssh and telnet
using ssh is ok.
Telnet and ftp from other server is ok.
Only from each other pc cannot. Both are in same segment.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 07:40 PM
11-28-2006 07:40 PM
Re: ssh and telnet
could there be any any firewall software installed that is blocking telnet connections?
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 09:25 PM
11-28-2006 09:25 PM
Re: ssh and telnet
After I install ssh HP-UX Secure Shell A.04.30.014/015 to this server only telnet got problem from each other.
Sometimes when I use putty an error comes out as Putty Security Alert.
Warning-Potential Security Breach.
The server's host key does not match the one Putty has cached in registry. This means that either the server administrator has changed the host key, or you have actually connected to another computer pretending tobe the server.
The new rsa2 key fingerprint is:
ssh-rsa 1024 0c:ssdsfasfffsdfsdfsf and so on
If you were expecting this change and trust the new key, hit Yes to update the Putty's cache and continue connecting. If you want to carry on connecting but without updating the cache, hit No.
If you want to abandon the connection completely, hit Cancel. Hitting Cancel is the ONLY guaranteed safe choice.
I chose No to proceed and will get login prompt for ssh. if I click Yes it will logout.
Do I need to remove the ssh from the server and download new one and reinstall abck later to see how it goes.
Actually I also lost from SAM where to remove this software :-(
Fauziah
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 09:27 PM
11-28-2006 09:27 PM
Re: ssh and telnet
After I install ssh HP-UX Secure Shell A.04.30.014/015 to this server only telnet got problem from each other.
Sometimes when I use putty an error comes out as Putty Security Alert.
Warning-Potential Security Breach.
The server's host key does not match the one Putty has cached in registry. This means that either the server administrator has changed the host key, or you have actually connected to another computer pretending to be the server.
The new rsa2 key fingerprint is:
ssh-rsa 1024 0c:ssdsfasfffsdfsdfsf and so on
If you were expecting this change and trust the new key, hit Yes to update the Putty's cache and continue connecting. If you want to carry on connecting but without updating the cache, hit No.
If you want to abandon the connection completely, hit Cancel. Hitting Cancel is the ONLY guaranteed safe choice.
I chose No to proceed and will get login prompt for ssh. if I click Yes it will logout.
Do I need to remove the ssh from the server and download new one and reinstall back later to see how it goes?
Actually I also lost from SAM where to remove this software :-(
Fauziah
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 11:22 PM
11-28-2006 11:22 PM
Re: ssh and telnet
Quite difficult to troubleshoot this problem.
If you want to remove ssh from your system before we can further troubleshoot this problem, try to use "swremove"
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-28-2006 11:44 PM
11-28-2006 11:44 PM
Re: ssh and telnet
can you verify the following?
There is an additional inetd security check, which is referenced inside file /var/adm/inetd.conf
before checking he inetd.conf file, the daemon looks for the restrictions for telnet depending on the incoming IP address of the packet. If it is allowed per inetd.sec, rules it continues, if not, other side will see a "connection refused" message and connection terminates.
hope this helps!
kind regards
yogeeraj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-29-2006 03:29 AM
11-29-2006 03:29 AM
Re: ssh and telnet
Geetha.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-29-2006 06:24 PM
11-29-2006 06:24 PM
Re: ssh and telnet
I found the inetd.conf only at /etc and /usr/newconfig/etc
There is no inetd.conf under /var/adm directory
sample of the contents
ftp stream tcp6 nowait root /usr/lbin/ftpd ftpd -l
telnet stream tcp6 nowait root /usr/lbin/telnetd telnetd
# Before uncommenting the "tftp" entry below, please make sure
# that you have a "tftp" user in /etc/passwd. If you don't
# have one, please consult the tftpd(1M) manual entry for
# information about setting up this service.
tftp dgram udp wait root /usr/lbin/tftpd tftpd\
/opt/ignite\
/var/opt/ignite
#bootps dgram udp wait root /usr/lbin/bootpd bootpd
#finger stream tcp nowait bin /usr/lbin/fingerd fingerd
login stream tcp6 nowait root /usr/lbin/rlogind rlogind
shell stream tcp6 nowait root /usr/lbin/remshd remshd
exec stream tcp6 nowait root /usr/lbin/rexecd rexecd
#uucp stream tcp nowait root /usr/sbin/uucpd uucpd
ntalk dgram udp wait root /usr/lbin/ntalkd ntalkd
auth stream tcp6 wait bin /usr/lbin/identd identd
Geetha, I did no run tcpwrapers to this box. I run ssh putty