FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.


» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Debian > Debian User

 
 
LinkBack Thread Tools
 
Old 01-27-2010, 07:15 AM
Marc Olive
 
Default Problems connecting to chrooted server with scponly shell

Hello,

I've setup a Debian Lenny server with a chroot environment and some users have
a "scponlyc" shell. There's a Cisco Linksys router to access to internet
forwarding port 22.
The problem is that users have to do several attemps to connect to the server,
after 6 or more attemps to connect sometimes they can login.
I have no idea why they have to try to connect so many times, and why the
connection is closed until they can connect.

sshd_config file have no special options set, and the passwd line for a
scponly user is like:
npuyal:x:2002:2002::/var/lib/vz/private/101//home/npuyal:/usr/sbin/scponlyc
I repeat: after trying to connect several times they finally login.

I attach sshd with debug level log enabled and sftp command output in verbose
mode. I paste some relevant lines here:

From sshd log:

Jan 27 08:47:40 blau-debian-02 sshd[30813]: Accepted password for npuyal from
192.168.1.1 port 39184 ssh2
Jan 27 08:47:40 blau-debian-02 sshd[30815]: debug1: SELinux support disabled
...
Jan 27 08:47:40 blau-debian-02 sshd[30815]: debug1: subsystem:
exec() /usr/lib/openssh/sftp-server
Jan 27 08:47:40 blau-debian-02 sshd[30815]: debug1: Received SIGCHLD.

From sftp -vvv:

debug1: Authentication succeeded (password).
debug1: Entering interactive session.
...
debug2: channel 0: rcvd eow
debug2: channel 0: close_read
debug2: channel 0: input open -> closed
debug2: channel 0: rcvd eof
debug2: channel 0: output open -> drain
debug2: channel 0: obuf empty
debug2: channel 0: close_write
debug2: channel 0: output drain -> closed
debug2: channel 0: rcvd close
debug3: channel 0: will not send data after close
debug2: channel 0: almost dead

Any idea?
Thanks

--

Marc Olivé
Grup Blau

marc.olive@grupblau.com

Tel. + 34 977 87 07 02
Tel i Fax. + 34 977 87 05 07

Plaça d'en Canós 9-11, 2on 1a
Espluga de Francolí
Tarragona

www.grupblau.com
 

Thread Tools




All times are GMT. The time now is 11:39 PM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright ©2007 - 2008, www.linux-archive.org