LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Ubuntu
User Name
Password
Ubuntu This forum is for the discussion of Ubuntu Linux.

Notices


Reply
  Search this Thread
Old 04-13-2007, 06:21 AM   #1
binary_dreamer
Member
 
Registered: Feb 2006
Distribution: debian squeeze
Posts: 199

Rep: Reputation: 31
ssh does not work between two PCs of the LAN


Hi. I got a LAN with IPs ranging from 192.168.1.65 (router), 192.168.1.66 (server) to 192.168.1.100 (PCs). the server is an ubuntu 6.10 machine. all the rest of the machine are running windows xp and ubuntu 6.10. All of the machines can connect to the server through ssh by making use either open-ssh or putty. the problem arises with one PC (192.168.1.66) which is a dual boot win xp and ubuntu 6.10. in win xp i can access the server by making use of putty. while in ubuntu i cannot connect to the server. any ideas why? i can ping the server but i cannot see it.
 
Old 04-13-2007, 06:42 AM   #2
blackhole54
Senior Member
 
Registered: Mar 2006
Posts: 1,896

Rep: Reputation: 61
The things that come immediately to mind are a firewall issue at either end of the wire, tcpwrappers on the server or possibly a configuration issue with sshd. (On the configuration issue, I thought I had read that you could used sshd_config to limit which hosts can connect, but glancing through the man page, I don't see it.)

If you don't see any obvious problems here, I would suggest using a packet sniffer like tcpdump or wireshark to see what is actually going on at a packet level.
 
Old 04-13-2007, 06:58 AM   #3
binary_dreamer
Member
 
Registered: Feb 2006
Distribution: debian squeeze
Posts: 199

Original Poster
Rep: Reputation: 31
both machines do not have a firewall in between. there is no setup for limiting an IP address. the thing is that this machine has the same IP when in winxp and it works perfect.
 
Old 04-13-2007, 07:55 AM   #4
blackhole54
Senior Member
 
Registered: Mar 2006
Posts: 1,896

Rep: Reputation: 61
I would use a packet sniffer when you try to ssh and see what packets are actually leaving and entering both machines. Then at least you would have something concrete to work with.
 
Old 04-13-2007, 08:33 AM   #5
binary_dreamer
Member
 
Registered: Feb 2006
Distribution: debian squeeze
Posts: 199

Original Poster
Rep: Reputation: 31
ok i will give it a try and then see what it will bring me.
 
Old 04-13-2007, 01:40 PM   #6
binary_dreamer
Member
 
Registered: Feb 2006
Distribution: debian squeeze
Posts: 199

Original Poster
Rep: Reputation: 31
the following is what happens when i ssh from 192.168.1.66 to 192.168.1.65

aris@aris-desktop:~$ ssh binary@192.168.1.65@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@ WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED! @
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
Someone could be eavesdropping on you right now (man-in-the-middle attack)!
It is also possible that the RSA host key has just been changed.
The fingerprint for the RSA key sent by the remote host is
ec:62:60:ee:..............................03.
Please contact your system administrator.
Add correct host key in /home/aris/.ssh/known_hosts to get rid of this message.
Offending key in /home/aris/.ssh/known_hosts:1
RSA host key for 192.168.1.65 has changed and you have requested strict checking.
Host key verification failed.
aris@aris-desktop:~$
 
Old 04-13-2007, 10:43 PM   #7
blackhole54
Senior Member
 
Registered: Mar 2006
Posts: 1,896

Rep: Reputation: 61
I'm a bit confused now. Is post #6 about your original problem? If so, you are connecting OK, but the RSA host key is different than your local host expects. If this is all on a LAN that you can trust (in other words, if you know that nobody is trying to do anything nasty), you can just delete the old/wrong key in /home/aris/.ssh/known_hosts (I am not sure what the ":1" is; I don't think it is part of the file name) and let ssh get the correct key the next time. If you don't have the ability to trust the network then you need to find a trustworthy way to get the correct key from 192.168.1.65 installed on 192.168.1.66.

If you trust the network and wish to simply remove the offending key, you can edit known_hosts with an editor and remove the line (they are long lines that will probably wrap around several times) for 192.168.1.65. You could also just delete the file, but if you have more than that one key in there you would then have to reestablish all the other keys. If there is any reason not to trust the network, be careful.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
open suse 10.2 can't ping other PCs on LAN simke Linux - Networking 3 04-08-2007 07:44 PM
How to connect other PCs in RHEL4 using LAN sundararaman Linux - Networking 1 02-25-2007 08:03 PM
Setting up a direct LAN between 2 PCs Mr_Nightmare Linux - Networking 3 08-31-2005 07:58 PM
help to join 2 network ID PCs in single LAN cranium2004 Linux - Networking 2 10-27-2004 02:58 AM
Linux as Gateway in a LAN out of 20 PCs stormblast Linux - Newbie 2 04-30-2004 12:22 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Ubuntu

All times are GMT -5. The time now is 10:13 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration