[ale] possible ssh compromise?

Dow Hurst dhurst at kennesaw.edu
Mon Nov 24 15:09:48 EST 2003


May depend on whether it is a DNS lookup reply or a /etc/hosts resolver 
reply.  I'm just guessing.
Dow


John Wells wrote:

>Ok....someone sanity check me here...
>
>
>I'm sshing into my home box and mistype my password a few times (fat
>fingered morning).
>
>Here's what it looks like:
>
>$ ssh myuser at myhome.net
>Password:
>Password:
>Password:
>myuser at myhome.net's password:
>myuser at myhome.net's password:
>myuser at myhome.net's password:
>Received disconnect from 66.22.42.XX 2: Too many authentication failures
>for myuser
>
>So, if I mistype the password 6 times, I get the following scenario above.
>
>If I ssh to a box on the local lan here at work, I instantly get
>myuser at mylocalhost's password:
>
>3 times, then failure.
>
>no "Password:" only prompts.
>
>Still, it seems to me that I've used ssh a lot in the past and only gotten
>simply "Password:".
>
>I'm wondering if this is some configuration thing I've set incorrectly or
>something else.  My home machine is a Red Hat 7.3 system.
>
>Course, it could be wishful thinking...and I could be compromised.  Any
>insight?
>
>Thanks!
>John
>
>
>_______________________________________________
>Ale mailing list
>Ale at ale.org
>http://www.ale.org/mailman/listinfo/ale
>
>  
>

-- 
__________________________________________________________
Dow Hurst                  Office: 770-499-3428            *
Systems Support Specialist    Fax: 770-423-6744            *
1000 Chastain Rd. Bldg. 12                                 *
Chemistry Department SC428  Email:   dhurst at kennesaw.edu   *
Kennesaw State University         Dow.Hurst at mindspring.com *
Kennesaw, GA 30144                                         *
************************************************************
This message (including any attachments) contains          *
confidential information intended for a specific individual*
and purpose, and is protected by law.  If you are not the  *
intended recipient, you should delete this message and are *
hereby notified that any disclosure, copying, distribution *
of this message, or the taking of any action based on it,  *
is strictly prohibited.                                    *
************************************************************




More information about the Ale mailing list