A way to log what line of authorized_keys that was used

Daniel Kahn Gillmor dkg at fifthhorseman.net
Wed Mar 25 02:00:56 EST 2009


On 03/24/2009 09:59 AM, William Viker wrote:
> I'm pretty sure that this isn't currently supported, so, I'll give it a  
> shot and rather be rtfm-flamed instead of not trying :)
> 
> Is there any way of logging what line of authorized_keys (and what file)  
> that was used when a user logs in? It would be very nice to have to  
> improve auditing logins of accounts with multiple publickeys.


If you bump up LogLevel to VERBOSE in sshd_config, sshd will log the
fingerprint of the matching key.  Is that sufficient for your purposes,
or do you want more detail?  If you want more detail, what specifically
are you looking for?

hth,

	--dkg

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 890 bytes
Desc: OpenPGP digital signature
Url : http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20090324/65809d72/attachment.bin 


More information about the openssh-unix-dev mailing list