openssh-2.9p1

Peter Breitenlohner peb at mppmu.mpg.de
Thu May 17 19:18:26 EST 2001


On Wed, 16 May 2001 mouring at etoh.eviladmin.org wrote:

Hi Ben,

> > 1. I think you should apply the attached patch to openssh-2.9p1,
> > otherwise ssh-keyscan on linux boxes with glibc-2.1 will experience enormous
> > timeout delays.
> 
> Hmm.. That solves the problem assuming that you never have IPv6 on the box
> since ssh-keyscan lacks a -6 option like ssh.  Maybe ssh-keyscan needs a
> -6 option?

Yes, something like '-6' (and '-4') would be good. I just wanted to get
ssh-keyscan working quickly (without the tremendous timeouts) on a pure IPv4
system (certainly a hack).

> > 2. Is there a program like ssh-keyscan for the Version2 (dsa and rsa) keys??
> >
> Not that I'm aware of at this point.

I think such a program (or variant of ssh-keyscan with, e.g.,  '-t rsa')
could be quite useful.

BTW: The ssh-keyscan man page mentions a BUG: It generates "Connection
closed by remote host" messages ....
I haven't seen any such mesages (on either side).

regards
Peter Breitenlohner <peb at mppmu.mpg.de>




More information about the openssh-unix-dev mailing list