OpenSSH
[Top] [All Lists]

Re: openssh with radius server unreachable

To: Pascal Henri <pascal.henri@alcatel.fr>
Subject: Re: openssh with radius server unreachable
From: Darren Tucker <dtucker@zip.com.au>
Date: Mon, 27 Nov 2006 15:01:12 +1100
Cc: openssh-unix-dev@mindrot.org
Delivered-to: sp-com-lists@consult.net
Delivered-to: openssh-unix-dev-list1@securepoint.com
Delivered-to: openssh-unix-dev-tmda@mindrot.org
Delivered-to: openssh-unix-dev@mindrot.org
In-reply-to: <45532D6A.9050303@alcatel.fr>
List-archive: <http://lists.mindrot.org/pipermail/openssh-unix-dev>
List-help: <mailto:openssh-unix-dev-request@mindrot.org?subject=help>
List-id: Development of portable OpenSSH <openssh-unix-dev.mindrot.org>
List-post: <mailto:openssh-unix-dev@mindrot.org>
List-subscribe: <http://lists.mindrot.org/mailman/listinfo/openssh-unix-dev>, <mailto:openssh-unix-dev-request@mindrot.org?subject=subscribe>
List-unsubscribe: <http://lists.mindrot.org/mailman/listinfo/openssh-unix-dev>, <mailto:openssh-unix-dev-request@mindrot.org?subject=unsubscribe>
References: <45532D6A.9050303@alcatel.fr>
Sender: openssh-unix-dev-bounces+openssh-unix-dev-list1=securepoint.com@mindrot.org
User-agent: Thunderbird 1.5.0.8 (Windows/20061025)
Pascal Henri wrote:
> I think to have find a small pb with openssh when a Radius server is 
> unreachable.
> I use radius authentication with pam my system-auth is the following
[...]
> when radius server is unreachable, we display contents of file 
> radiusfailure "RADIUS servers are unreachable, need local password.".
> with telnet this contents is display on client between each 
> authentication try but not when i use ssh client.

Which version of OpenSSH are you using?  There were some changes a while 
back (maybe 4.2p1 or so) whereby the messages returned by PAM were sent 
to the client as SSH2 banner packets, which should include situations 
such as this.

-- 
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4  37C9 C982 80C7 8FF4 FA69
     Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@mindrot.org
http://lists.mindrot.org/mailman/listinfo/openssh-unix-dev

<Prev in Thread] Current Thread [Next in Thread>