From owner-FreeBSD-users-jp@jp.freebsd.org  Sat Apr  7 10:27:07 2001
Received: (from daemon@localhost)
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) id KAA44232;
	Sat, 7 Apr 2001 10:27:07 +0900 (JST)
	(envelope-from owner-FreeBSD-users-jp@jp.FreeBSD.org)
Received: from rcpt-expgw.biglobe.ne.jp (rcpt-expgw.biglobe.ne.jp [210.147.6.234])
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) with ESMTP id KAA44227
	for <FreeBSD-users-jp@jp.freebsd.org>; Sat, 7 Apr 2001 10:27:07 +0900 (JST)
	(envelope-from hnakamur@mwa.biglobe.ne.jp)
Received: from smtp-gw.biglobe.ne.jp
	by rcpt-expgw.biglobe.ne.jp (8.9.3+3.2W/3.7W-01032315) with ESMTP id KAA22396
	for <FreeBSD-users-jp@jp.freebsd.org>; Sat, 7 Apr 2001 10:27:06 +0900 (JST)
X-Biglobe-Sender: <hnakamur@mwa.biglobe.ne.jp>
Received: from hiroshi.mwa.biglobe.ne.jp (211.135.234.146 [211.135.234.146]) by smtp-gw.biglobe.ne.jp
	id KARIC0A8268C; Sat, 07 Apr 2001 10:27:05 +0900 (JST)
Message-Id: <200104070127.AA00728@hiroshi.mwa.biglobe.ne.jp>
From: Hiroshi Nakamura <hnakamur@mwa.biglobe.ne.jp>
Date: Sat, 07 Apr 2001 10:27:11 +0900
To: FreeBSD-users-jp@jp.freebsd.org
In-Reply-To: <v04210a01b6f2bf7bbcba@[150.12.148.24]>
References: <v04210a01b6f2bf7bbcba@[150.12.148.24]>
MIME-Version: 1.0
X-Mailer: AL-Mail32 Version 1.10
Content-Type: text/plain; charset=iso-2022-jp
Reply-To: FreeBSD-users-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+010328
X-Sequence: FreeBSD-users-jp 60639
Subject: [FreeBSD-users-jp 60639] Re: OpenSSH
 =?ISO-2022-JP?B?GyRCJEclaiViITwlSCVtJTAlJCVzJCw9UE1oJEobKEI=?=
 =?ISO-2022-JP?B?GyRCJCQbKEI=?= 
Errors-To: owner-FreeBSD-users-jp@jp.freebsd.org
Sender: owner-FreeBSD-users-jp@jp.freebsd.org
X-Originator: hnakamur@mwa.biglobe.ne.jp

$BCfB<$G$9!#(B

>$BF#ED$G$9(B.
>>debug: Trying Kerberos V5 authentication.
>>Apr  5 23:18:32 hiroshi sshd[417]: fatal: Timeout before authentication 
>>for 192.168.0.4.
>
>4.2R$B$N(Bsshd$B$N%G%U%)%k%H$,(BKerberos$B$r;H$C$FG'>Z$r9T$&$i$7$/!"(B
>$B!!$*2H$N(BLAN$BFb$K(BKerberos$B%5!<%P$,$J$$(B
>$B!!!!"*30$N%M%C%H%o!<%/$KC5$7$K$$$/(B
>$B!!!!!!!!30$H$O7R$,$C$F$J$$>uBV(B
>$B!!!!!!"*(Btimeout$B$K$J$k$i$7$$(B

$B%$%s%?!<%M%C%H$K@\B3$7$?>uBV$G!"$d$C$F$_$?$i$&$^$/9T$-$^$7$?!#(B
$B%k!<%?$N(BLED$B$r8+$F$$$k$H30It$H$$$m$$$mDL?.$7$F$$$kMM$G$9$,!"(B
$B30It$N(BKerberos$B%5!<%P$H$N$d$j$H$j$J$N$G$7$g$&$+!#(B

$B!JESCfN,!K(B
debug: Trying Kerberos V5 authentication.
debug: Doing password authentication.
hnakamur@taro.home's password: 
debug: Requesting pty.
debug: Requesting shell.
debug: Entering interactive session.
Last login: Sat Apr  7 09:12:02 2001 from hiroshi.home
$B!J0J2<N,!K(B

>
>#$B!!!!(B/etc/ssh/sshd_config$B$K(B
>#$B!!!!!!(BKerberos5Authentication no
>#$B!!$H5-=R$9$l$P$h$$$H$N>pJs$b8+$?$3$H$"$j$^$9$,(B
>#$B!!$d$C$?$3$H$,$"$j$^$;$s(B.

$B$d$C$F$_$^$7$?$,!"0J2<$NMM$J>u67$G$&$^$/9T$-$^$;$s$G$7$?!#(B
$B=$@5$O!":G8e$KE:IU$7$?!"(B/etc/ssh/sshd_config$B$N3:Ev9T$N(B
$B%3%a%s%H$r30$7$^$7$?!#!J(BKerberosAuthentication no$B!K(B

%slogin -v taro
SSH Version OpenSSH_2.2.0, protocol versions 1.5/2.0.
Compiled with SSL (0x0090581f).
debug: Reading configuration data /etc/ssh/ssh_config
debug: ssh_connect: getuid 0 geteuid 0 anon 0
debug: Connecting to taro.home [192.168.0.4] port 22.
debug: Allocated local port 1012.
debug: connect: Connection refused
debug: Trying again...
debug: Connecting to taro.home [192.168.0.4] port 22.
debug: Allocated local port 1011.
debug: connect: Connection refused
debug: Trying again...
debug: Connecting to taro.home [192.168.0.4] port 22.
debug: Allocated local port 1010.
debug: connect: Connection refused
debug: Trying again...
debug: Connecting to taro.home [192.168.0.4] port 22.
debug: Allocated local port 1009.
debug: connect: Connection refused
Secure connection to taro.home refused.
%

$B0J2<$K(B/etc/ssh/sshd_config$B$r<($7$^$9!#(B
$B!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!]!](B
# This is ssh server systemwide configuration file.
#
# $FreeBSD: src/crypto/openssh/sshd_config,v 1.4.2.3 2000/10/28 23:00:51 kris Exp $

Port 22
#Protocol 2,1
#ListenAddress 0.0.0.0
#ListenAddress ::
HostKey /etc/ssh/ssh_host_key
HostDsaKey /etc/ssh/ssh_host_dsa_key
ServerKeyBits 768
LoginGraceTime 120
KeyRegenerationInterval 3600
PermitRootLogin no
# Rate-limit sshd connections to 5 connections per 10 seconds
ConnectionsPerPeriod 5/10
# Don't read ~/.rhosts and ~/.shosts files
IgnoreRhosts yes
# Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication
#IgnoreUserKnownHosts yes
StrictModes yes
X11Forwarding yes
X11DisplayOffset 10
PrintMotd yes
KeepAlive yes

# Logging
SyslogFacility AUTH
LogLevel INFO
#obsoletes QuietMode and FascistLogging

RhostsAuthentication no
#
# For this to work you will also need host keys in /etc/ssh_known_hosts
RhostsRSAAuthentication no
#
RSAAuthentication yes

# To disable tunneled clear text passwords, change to no here!
PasswordAuthentication yes
PermitEmptyPasswords no
# Uncomment to disable s/key passwords 
#SkeyAuthentication no

# To change Kerberos options
#KerberosAuthentication no
#KerberosOrLocalPasswd yes
#AFSTokenPassing no
#KerberosTicketCleanup no

# Kerberos TGT Passing does only work with the AFS kaserver
#KerberosTgtPassing yes

CheckMail yes
#UseLogin no

# Uncomment if you want to enable sftp
#Subsystem	sftp	/usr/libexec/sftp-server
#MaxStartups 10:30:60


-----------------------------------------------------------
Hiroshi Nakamura
Email:hnakamur@mwa.biglobe.ne.jp
Japanese :http://www2h.biglobe.ne.jp/~hnakamur/
English  :http://www2h.biglobe.ne.jp/~hnakamur/e/
Technolab:http://www2h.biglobe.ne.jp/~hnakamur/technolab/
---------------------------------------------------pc9821--
