Excessive delay at ssh connection to remote host
James Moe
moe.james at sohnen-moe.com
Mon Oct 5 08:31:23 AEDT 2026
On 2026-10-03 21:21, Lars Noodén via openssh-unix-dev wrote:
> Thus the recommendation to log the separate instance of sshd
> separately using -E.
>
> /usr/sbin/sshd -p 2222 -E /tmp/sshd.log -d -d -d
Nevertheless I decided to try this anyway.
----[ ssh session ]----
$ date; ssh -p 2222 sma-user1 at sma-station12l; date
Sun Oct 4 01:39:30 PM MST 2026
sma-user1 at sma-station12l's password:
---< bunch o' login stuff >---
Sun Oct 4 01:41:56 PM MST 2026
$
$ exit
logout
Connection to sma-station12l closed.
Sun Oct 4 01:42:15 PM MST 2026
----[ end ]----
Note that there was a 2m 36s delay (01:39:30 to 01:41:56) before I logged in. It
was about 30 seconds to notice the prompt and enter the password.
I have attached the log file.
The delay occurs regardless of which host is local or remote.
--
James Moe
moe dot james at sohnen-moe dot com
520.743.3936
Think.
-------------- next part --------------
----[ ssh session ]----
$ date; ssh -p 2222 sma-user1 at sma-station12l; date
Sun Oct 4 01:39:30 PM MST 2026
sma-user1 at sma-station12l's password:
Last login: Sat Oct 3 11:30:08 MST 2026 from 192.168.69.115 on ssh
--- bunch o' login stuff ---
Sun Oct 4 01:41:56 PM MST 2026
$
$ exit
logout
Connection to sma-station12l closed.
Sun Oct 4 01:42:15 PM MST 2026
----[ end ]----
debug1: sshd version OpenSSH_10.5, OpenSSL 3.5.3 16 Sep 2025
debug3: Running on Linux 7.2.5-1-default #1 SMP PREEMPT_DYNAMIC Sat Sep 12 06:50:42 UTC 2026 (6b7e8a9) x86_64
debug3: Started with: /usr/sbin/sshd -p 2222 -d -d -d -E /home/sma-user1/tmp1/ssh-debug-2222.txt
debug2: load_server_config: filename /usr/etc/ssh/sshd_config
debug2: load_server_config: done config len = 4123
debug2: parse_server_config_depth: config /usr/etc/ssh/sshd_config len 4123
debug2: /usr/etc/ssh/sshd_config line 12: new include /etc/ssh/sshd_config.d/*.conf
debug2: /usr/etc/ssh/sshd_config line 12: no match for /etc/ssh/sshd_config.d/*.conf
debug2: /usr/etc/ssh/sshd_config line 18: new include /usr/etc/ssh/sshd_config.d/*.conf
debug2: /usr/etc/ssh/sshd_config line 18: including /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf
debug2: load_server_config: filename /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf
debug2: load_server_config: done config len = 413
debug2: parse_server_config_depth: config /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf len 413
debug2: /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf line 6: new include /etc/crypto-policies/back-ends/opensshserver.config
debug2: /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf line 6: including /etc/crypto-policies/back-ends/opensshserver.config
debug2: load_server_config: filename /etc/crypto-policies/back-ends/opensshserver.config
debug2: load_server_config: done config len = 2331
debug2: parse_server_config_depth: config /etc/crypto-policies/back-ends/opensshserver.config len 2331
debug3: /etc/crypto-policies/back-ends/opensshserver.config:1 setting Ciphers aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr
debug3: /etc/crypto-policies/back-ends/opensshserver.config:2 setting MACs hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:3 setting GSSAPIKexAlgorithms gss-curve25519-sha256-,gss-nistp256-sha256-,gss-group14-sha256-,gss-group16-sha512-
debug3: gss kex names ok: [gss-curve25519-sha256-,gss-nistp256-sha256-,gss-group14-sha256-,gss-group16-sha512-]
debug3: /etc/crypto-policies/back-ends/opensshserver.config:4 setting KexAlgorithms sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,mlkem768x25519-sha256,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:5 setting HostKeyAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:6 setting PubkeyAcceptedAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:7 setting HostbasedAcceptedAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:8 setting CASignatureAlgorithms ecdsa-sha2-nistp256,sk-ecdsa-sha2-nistp256 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,ssh-ed25519,sk-ssh-ed25519 at openssh.com,rsa-sha2-256,rsa-sha2-512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:9 setting RequiredRSASize 2048
debug3: /usr/etc/ssh/sshd_config:49 setting AuthorizedKeysFile .ssh/authorized_keys
debug3: /usr/etc/ssh/sshd_config:94 setting UsePAM yes
debug3: /usr/etc/ssh/sshd_config:99 setting X11Forwarding yes
debug3: /usr/etc/ssh/sshd_config:103 setting PrintMotd no
debug3: /usr/etc/ssh/sshd_config:120 setting Subsystem sftp /usr/libexec/ssh/sftp-server
debug3: /usr/etc/ssh/sshd_config:123 setting AcceptEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES
debug3: /usr/etc/ssh/sshd_config:124 setting AcceptEnv LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT
debug3: /usr/etc/ssh/sshd_config:125 setting AcceptEnv LC_IDENTIFICATION LC_ALL
debug3: /usr/etc/ssh/sshd_config:128 setting AcceptEnv LC_TERMINAL LC_TERMINAL_VERSION
debug3: /usr/etc/ssh/sshd_config:129 setting AcceptEnv COLORTERM TERM_PROGRAM TERM_PROGRAM_VERSION
debug1: private host key #0: ssh-rsa SHA256:8Hej8HhXYFgbbfCkxdP8BBJ9fa2mB0BHukafK2p+SDM
debug1: private host key #1: ecdsa-sha2-nistp256 SHA256:fCfJ8NV2n/ynC0TXxsHWYSnqEv0lmXrp0fFj/F8tJ34
debug1: private host key #2: ssh-ed25519 SHA256:afPTJUksIP6UOXoEyloLZD0T30pUOdLVecTrHjsYI00
debug1: private host key #3: ssh-mldsa44-ed25519 at openssh.com SHA256:BBHy+cX+3ZzAjLldyj3H3Wq8KK5ZnPMc20T5iSx0los
debug3: pack_config: d config len 4123
debug3: pack_config: done
debug1: rexec_argv[1]='-p'
debug1: rexec_argv[2]='2222'
debug1: rexec_argv[3]='-d'
debug1: rexec_argv[4]='-d'
debug1: rexec_argv[5]='-d'
debug1: rexec_argv[6]='-E'
debug1: rexec_argv[7]='/home/sma-user1/tmp1/ssh-debug-2222.txt'
debug3: using /usr/libexec/ssh/sshd-session for re-exec
debug3: oom_adjust_setup
debug1: Set /proc/self/oom_score_adj from 200 to -1000
debug2: fd 7 setting O_NONBLOCK
debug1: Bind to port 2222 on 0.0.0.0.
Server listening on 0.0.0.0 port 2222.
debug2: fd 8 setting O_NONBLOCK
debug3: sock_set_v6only: set socket 8 IPV6_V6ONLY
debug1: Bind to port 2222 on ::.
Server listening on :: port 2222.
debug3: fd 9 is not O_NONBLOCK
debug1: Server will not fork when running in debugging mode.
debug1: rexec start in 9 out 9 newsock 9 config_s 10/11
debug3: send_rexec_state: entering fd = 10 config len 7143
debug3: send_rexec_state: done
debug3: recv_rexec_state: entering fd = 4
debug3: ssh_msg_recv entering
debug3: ssh_msg_recv entering
debug2: parse_hostkeys: privkey 0: ssh-rsa
debug2: parse_hostkeys: pubkey 0: ssh-rsa
debug2: parse_hostkeys: privkey 1: ecdsa-sha2-nistp256
debug2: parse_hostkeys: pubkey 1: ecdsa-sha2-nistp256
debug2: parse_hostkeys: privkey 2: ssh-ed25519
debug2: parse_hostkeys: pubkey 2: ssh-ed25519
debug2: parse_hostkeys: privkey 3: ssh-mldsa44-ed25519 at openssh.com
debug2: parse_hostkeys: pubkey 3: ssh-mldsa44-ed25519 at openssh.com
debug3: recv_rexec_state: done
debug2: parse_server_config_depth: config rexec len 4123
debug2: parse_server_config_depth: config len 0
debug2: parse_server_config_depth: config /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf len 413
debug2: parse_server_config_depth: config /etc/crypto-policies/back-ends/opensshserver.config len 2331
debug3: /etc/crypto-policies/back-ends/opensshserver.config:1 setting Ciphers aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr
debug3: /etc/crypto-policies/back-ends/opensshserver.config:2 setting MACs hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:3 setting GSSAPIKexAlgorithms gss-curve25519-sha256-,gss-nistp256-sha256-,gss-group14-sha256-,gss-group16-sha512-
debug3: gss kex names ok: [gss-curve25519-sha256-,gss-nistp256-sha256-,gss-group14-sha256-,gss-group16-sha512-]
debug3: /etc/crypto-policies/back-ends/opensshserver.config:4 setting KexAlgorithms sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,mlkem768x25519-sha256,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:5 setting HostKeyAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:6 setting PubkeyAcceptedAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:7 setting HostbasedAcceptedAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp256-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521,ecdsa-sha2-nistp521-cert-v01 at openssh.com,ssh-ed25519,ssh-ed25519-cert-v01 at openssh.com,sk-ssh-ed25519 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,rsa-sha2-256,rsa-sha2-256-cert-v01 at openssh.com,rsa-sha2-512,rsa-sha2-512-cert-v01 at openssh.com
debug3: /etc/crypto-policies/back-ends/opensshserver.config:8 setting CASignatureAlgorithms ecdsa-sha2-nistp256,sk-ecdsa-sha2-nistp256 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,ssh-ed25519,sk-ssh-ed25519 at openssh.com,rsa-sha2-256,rsa-sha2-512
debug3: /etc/crypto-policies/back-ends/opensshserver.config:9 setting RequiredRSASize 2048
debug3: rexec:49 setting AuthorizedKeysFile .ssh/authorized_keys
debug3: rexec:94 setting UsePAM yes
debug3: rexec:99 setting X11Forwarding yes
debug3: rexec:103 setting PrintMotd no
debug3: rexec:120 setting Subsystem sftp /usr/libexec/ssh/sftp-server
debug3: rexec:123 setting AcceptEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES
debug3: rexec:124 setting AcceptEnv LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT
debug3: rexec:125 setting AcceptEnv LC_IDENTIFICATION LC_ALL
debug3: rexec:128 setting AcceptEnv LC_TERMINAL LC_TERMINAL_VERSION
debug3: rexec:129 setting AcceptEnv COLORTERM TERM_PROGRAM TERM_PROGRAM_VERSION
debug1: sshd-session version OpenSSH_10.5, OpenSSL 3.5.3 16 Sep 2025
debug1: network sockets: 7, 7
debug2: fd 7 setting TCP_NODELAY
debug3: set_sock_tos: set socket 7 IP_TOS 0x10
debug3: server_process_channel_timeouts: setting 0 timeouts
debug3: channel_clear_timeouts: clearing
Connection from 192.168.69.115 port 55512 on 192.168.69.109 port 2222 rdomain ""
debug2: fd 7 setting O_NONBLOCK
debug2: Network child is on pid 644788
debug3: preauth child monitor started
debug1: network sockets: 5, 5 [preauth]
debug3: recv_privsep_state: begin [preauth]
debug3: mm_get_state: entering [preauth]
debug3: mm_request_send: entering, type 51 [preauth]
debug3: mm_get_state: waiting for MONITOR_ANS_STATE [preauth]
debug3: mm_request_receive_expect: entering, type 52 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 51
debug1: mm_answer_state: config len 4123
debug3: mm_request_send: entering, type 52
debug3: mm_answer_state: done
debug2: monitor_read: 51 used once, disabling now
debug3: mm_get_state: done [preauth]
debug2: parse_hostkeys: key 0: ssh-rsa [preauth]
debug2: parse_hostkeys: key 1: ecdsa-sha2-nistp256 [preauth]
debug2: parse_hostkeys: key 2: ssh-ed25519 [preauth]
debug2: parse_hostkeys: key 3: ssh-mldsa44-ed25519 at openssh.com [preauth]
debug3: recv_privsep_state: done [preauth]
debug2: fd 5 is TCP_NODELAY [preauth]
debug3: set_sock_tos: set socket 5 IP_TOS 0x10 [preauth]
debug1: sshd-auth version OpenSSH_10.5, OpenSSL 3.5.3 16 Sep 2025 [preauth]
debug3: server_process_channel_timeouts: setting 0 timeouts [preauth]
debug3: channel_clear_timeouts: clearing [preauth]
debug3: fd 5 is O_NONBLOCK [preauth]
debug3: ssh_sandbox_init: preparing seccomp filter sandbox [preauth]
debug1: SELinux support disabled [preauth]
debug3: privsep user:group 495:494 [preauth]
debug1: permanently_set_uid: 495/494 [preauth]
debug3: ssh_sandbox_child: setting PR_SET_NO_NEW_PRIVS [preauth]
debug3: ssh_sandbox_child: attaching seccomp filter program [preauth]
debug3: append_hostkey_type: ssh-rsa key not permitted by HostkeyAlgorithms [preauth]
debug3: append_hostkey_type: ssh-mldsa44-ed25519 at openssh.com key not permitted by HostkeyAlgorithms [preauth]
debug1: list_hostkey_types: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519 [preauth]
debug1: Local version string SSH-2.0-OpenSSH_10.5 [preauth]
debug1: Remote protocol version 2.0, remote software version OpenSSH_10.5 [preauth]
debug1: compat_banner: match: OpenSSH_10.5 pat OpenSSH* compat 0x04000000 [preauth]
debug3: mm_sshkey_setcompat: entering [preauth]
debug3: mm_request_send: entering, type 18 [preauth]
debug3: send packet: type 20 [preauth]
debug1: SSH2_MSG_KEXINIT sent [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 18
debug3: mm_answer_setcompat: entering
debug2: monitor_read: 18 used once, disabling now
debug3: receive packet: type 20 [preauth]
debug1: SSH2_MSG_KEXINIT received [preauth]
debug2: local server KEXINIT proposal [preauth]
debug2: KEX algorithms: sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,mlkem768x25519-sha256,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-s,kex-strict-s-v00 at openssh.com [preauth]
debug2: host key algorithms: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519 [preauth]
debug2: ciphers ctos: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: ciphers stoc: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: MACs ctos: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: MACs stoc: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: compression ctos: none,zlib at openssh.com [preauth]
debug2: compression stoc: none,zlib at openssh.com [preauth]
debug2: languages ctos: [preauth]
debug2: languages stoc: [preauth]
debug2: first_kex_follows 0 [preauth]
debug2: reserved 0 [preauth]
debug2: peer client KEXINIT proposal [preauth]
debug2: KEX algorithms: sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,mlkem768x25519-sha256,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-c,kex-strict-c-v00 at openssh.com [preauth]
debug2: host key algorithms: ssh-ed25519-cert-v01 at openssh.com,ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521-cert-v01 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,webauthn-sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,rsa-sha2-512-cert-v01 at openssh.com,rsa-sha2-256-cert-v01 at openssh.com,ssh-ed25519,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ssh-ed25519 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,webauthn-sk-ecdsa-sha2-nistp256 at openssh.com,rsa-sha2-512,rsa-sha2-256 [preauth]
debug2: ciphers ctos: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: ciphers stoc: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: MACs ctos: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: MACs stoc: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: compression ctos: none,zlib at openssh.com [preauth]
debug2: compression stoc: none,zlib at openssh.com [preauth]
debug2: languages ctos: [preauth]
debug2: languages stoc: [preauth]
debug2: first_kex_follows 0 [preauth]
debug2: reserved 0 [preauth]
debug3: kex_choose_conf: will use strict KEX ordering [preauth]
debug1: kex: algorithm: sntrup761x25519-sha512 [preauth]
debug1: kex: host key algorithm: ssh-ed25519 [preauth]
debug1: kex: client->server cipher: aes256-gcm at openssh.com MAC: <implicit> compression: none [preauth]
debug1: kex: server->client cipher: aes256-gcm at openssh.com MAC: <implicit> compression: none [preauth]
debug1: kex: sntrup761x25519-sha512 need=32 dh_need=32 [preauth]
debug3: mm_request_send: entering, type 120 [preauth]
debug3: mm_request_receive_expect: entering, type 121 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 120
debug3: mm_request_send: entering, type 121
debug1: kex: sntrup761x25519-sha512 need=32 dh_need=32 [preauth]
debug3: mm_request_send: entering, type 120 [preauth]
debug3: mm_request_receive_expect: entering, type 121 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 120
debug3: mm_request_send: entering, type 121
debug1: expecting SSH2_MSG_KEX_ECDH_INIT [preauth]
debug3: receive packet: type 30 [preauth]
debug1: SSH2_MSG_KEX_ECDH_INIT received [preauth]
debug3: mm_sshkey_sign: entering [preauth]
debug3: mm_request_send: entering, type 6 [preauth]
debug3: mm_sshkey_sign: waiting for MONITOR_ANS_SIGN [preauth]
debug3: mm_request_receive_expect: entering, type 7 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 6
debug3: mm_answer_sign: entering
debug1: mm_answer_sign: hostkey ssh-ed25519 index 2
debug3: mm_answer_sign: ssh-ed25519 KEX signature len=83
debug3: mm_request_send: entering, type 7
debug2: monitor_read: 6 used once, disabling now
debug3: mm_sshkey_sign: ssh-ed25519 signature len=83 [preauth]
debug3: send packet: type 31 [preauth]
debug3: send packet: type 21 [preauth]
debug1: ssh_packet_send2_wrapped: resetting send seqnr 3 [preauth]
debug2: ssh_set_newkeys: mode 1 [preauth]
debug1: rekey out after 4294967296 blocks [preauth]
debug1: SSH2_MSG_NEWKEYS sent [preauth]
debug1: Sending SSH2_MSG_EXT_INFO [preauth]
debug3: send packet: type 7 [preauth]
debug1: expecting SSH2_MSG_NEWKEYS [preauth]
debug3: receive packet: type 21 [preauth]
debug1: ssh_packet_read_poll2: resetting read seqnr 3 [preauth]
debug1: SSH2_MSG_NEWKEYS received [preauth]
debug2: ssh_set_newkeys: mode 0 [preauth]
debug1: rekey in after 4294967296 blocks [preauth]
debug2: KEX algorithms: sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,mlkem768x25519-sha256,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-s,kex-strict-s-v00 at openssh.com [preauth]
debug2: host key algorithms: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519 [preauth]
debug2: ciphers ctos: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: ciphers stoc: aes256-gcm at openssh.com,chacha20-poly1305 at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr [preauth]
debug2: MACs ctos: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: MACs stoc: hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512 [preauth]
debug2: compression ctos: none,zlib at openssh.com [preauth]
debug2: compression stoc: none,zlib at openssh.com [preauth]
debug2: languages ctos: [preauth]
debug2: languages stoc: [preauth]
debug2: first_kex_follows 0 [preauth]
debug2: reserved 0 [preauth]
debug1: KEX done [preauth]
debug3: receive packet: type 7 [preauth]
debug1: SSH2_MSG_EXT_INFO received [preauth]
debug3: kex_input_ext_info: extension ext-info-in-auth at openssh.com [preauth]
debug1: kex_ext_info_check_ver: ext-info-in-auth at openssh.com=<0> [preauth]
debug3: receive packet: type 5 [preauth]
debug3: send packet: type 6 [preauth]
debug3: receive packet: type 50 [preauth]
debug1: userauth-request for user sma-user1 service ssh-connection method none [preauth]
debug1: attempt 0 failures 0 [preauth]
debug3: mm_getpwnamallow: entering [preauth]
debug3: mm_request_send: entering, type 8 [preauth]
debug3: mm_getpwnamallow: waiting for MONITOR_ANS_PWNAM [preauth]
debug3: mm_request_receive_expect: entering, type 9 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 8
debug3: mm_answer_pwnamallow: entering
debug2: parse_server_config_depth: config reprocess config len 4123
debug2: parse_server_config_depth: config len 0
debug2: parse_server_config_depth: config /usr/etc/ssh/sshd_config.d/40-suse-crypto-policies.conf len 413
debug2: parse_server_config_depth: config /etc/crypto-policies/back-ends/opensshserver.config len 2331
debug3: server_process_channel_timeouts: setting 0 timeouts
debug3: channel_clear_timeouts: clearing
debug3: mm_answer_pwnamallow: sending MONITOR_ANS_PWNAM: 1
debug3: mm_request_send: entering, type 9
debug2: monitor_read: 8 used once, disabling now
debug3: server_process_channel_timeouts: setting 0 timeouts [preauth]
debug3: channel_clear_timeouts: clearing [preauth]
debug2: input_userauth_request: setting up authctxt for sma-user1 [preauth]
debug3: mm_start_pam: entering [preauth]
debug3: mm_request_send: entering, type 100 [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 100
debug1: PAM: initializing for "sma-user1" with service "sshd"
debug1: PAM: setting PAM_RHOST to "192.168.69.115"
debug1: PAM: setting PAM_TTY to "ssh"
debug2: monitor_read: 100 used once, disabling now
debug3: mm_inform_authserv: entering [preauth]
debug3: mm_request_send: entering, type 4 [preauth]
debug3: mm_inform_authrole: entering [preauth]
debug3: mm_request_send: entering, type 80 [preauth]
debug1: kex_server_update_ext_info: Sending SSH2_MSG_EXT_INFO [preauth]
debug3: send packet: type 7 [preauth]
debug2: input_userauth_request: try method none [preauth]
debug3: userauth_finish: failure partial=0 next methods="publickey,password,keyboard-interactive" [preauth]
debug3: send packet: type 51 [preauth]
debug3: receive packet: type 50 [preauth]
debug1: userauth-request for user sma-user1 service ssh-connection method publickey [preauth]
debug1: attempt 1 failures 0 [preauth]
debug2: input_userauth_request: try method publickey [preauth]
debug2: userauth_pubkey: valid user sma-user1 querying public key ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIHbvlLCXAXcBRsuF52OsOmnE4dLhT0ua+HsqW6+dDxPG [preauth]
debug1: userauth_pubkey: publickey test pkalg ssh-ed25519 pkblob ED25519 SHA256:gaxKqY1KfNtIUVs2IAMReWmhsg7ZITBKh7HDS96mQPI [preauth]
debug3: mm_key_allowed: entering [preauth]
debug3: mm_request_send: entering, type 22 [preauth]
debug3: mm_key_allowed: waiting for MONITOR_ANS_KEYALLOWED [preauth]
debug3: mm_request_receive_expect: entering, type 23 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 4
debug3: mm_answer_authserv: service=ssh-connection, style=
debug2: monitor_read: 4 used once, disabling now
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 80
debug3: mm_answer_authrole: role=
debug2: monitor_read: 80 used once, disabling now
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 22
debug3: mm_answer_keyallowed: entering
debug1: temporarily_use_uid: 1000/100 (e=0/0)
debug1: restore_uid: 0/0
debug1: temporarily_use_uid: 1000/100 (e=0/0)
debug1: trying public key file /home/sma-user1/.ssh/authorized_keys
debug1: fd 8 clearing O_NONBLOCK
debug2: auth_check_authkeys_file: /home/sma-user1/.ssh/authorized_keys: processed 1/1 lines
debug1: restore_uid: 0/0
debug3: mm_answer_keyallowed: publickey authentication test: ED25519 key is not allowed
Failed publickey for sma-user1 from 192.168.69.115 port 55512 ssh2: ED25519 SHA256:gaxKqY1KfNtIUVs2IAMReWmhsg7ZITBKh7HDS96mQPI
debug3: mm_request_send: entering, type 23
debug2: userauth_pubkey: authenticated 0 pkalg ssh-ed25519 [preauth]
debug3: user_specific_delay: user specific delay 3.050ms [preauth]
debug3: ensure_minimum_time_since: elapsed 60.833ms, delaying 3.568ms (requested 8.050ms) [preauth]
debug3: userauth_finish: failure partial=0 next methods="publickey,password,keyboard-interactive" [preauth]
debug3: send packet: type 51 [preauth]
debug3: receive packet: type 50 [preauth]
debug1: userauth-request for user sma-user1 service ssh-connection method password [preauth]
debug1: attempt 2 failures 1 [preauth]
debug2: input_userauth_request: try method password [preauth]
debug3: mm_auth_password: entering [preauth]
debug3: mm_request_send: entering, type 12 [preauth]
debug3: mm_auth_password: waiting for MONITOR_ANS_AUTHPASSWORD [preauth]
debug3: mm_request_receive_expect: entering, type 13 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 12
debug2: sshpam_auth_passwd: auth information in SSH_AUTH_INFO_0
debug3: sshpam_passwd_conv: PAM: called with 1 messages
debug1: PAM: password authentication accepted for sma-user1
debug3: mm_answer_authpassword: sending result 1
debug3: mm_request_send: entering, type 13
debug3: mm_request_receive_expect: entering, type 102
debug3: mm_request_receive: entering
debug1: do_pam_account: called
debug2: do_pam_account: auth information in SSH_AUTH_INFO_0
debug3: PAM: do_pam_account pam_acct_mgmt = 0 (Success)
debug3: mm_request_send: entering, type 103
Accepted password for sma-user1 from 192.168.69.115 port 55512 ssh2
debug1: monitor_child_preauth: user sma-user1 authenticated by privileged process
debug3: mm_get_keystate: Waiting for new keys
debug3: mm_request_receive_expect: entering, type 26
debug3: mm_request_receive: entering
debug3: mm_get_keystate: GOT new keys
debug3: mm_request_receive_expect: entering, type 122
debug3: mm_request_receive: entering
debug3: mm_request_send: entering, type 123
debug3: mm_auth_password: user authenticated [preauth]
debug3: user_specific_delay: user specific delay 3.050ms [preauth]
debug3: ensure_minimum_time_since: elapsed 31.499ms, delaying 0.701ms (requested 8.050ms) [preauth]
debug3: mm_do_pam_account: entering [preauth]
debug3: mm_request_send: entering, type 102 [preauth]
debug3: mm_request_receive_expect: entering, type 103 [preauth]
debug3: mm_request_receive: entering [preauth]
debug3: mm_do_pam_account: returning 1 [preauth]
debug3: send packet: type 52 [preauth]
debug3: mm_request_send: entering, type 26 [preauth]
debug3: mm_send_keystate: Finished sending state [preauth]
debug3: mm_request_send: entering, type 122 [preauth]
debug3: mm_request_receive_expect: entering, type 123 [preauth]
debug3: mm_request_receive: entering [preauth]
debug1: monitor_read_log: child log fd closed
debug3: monitor_child_preauth: preauth child 644788 terminated successfully
debug1: audit_event: unhandled event 2
debug1: SELinux support disabled
debug1: PAM: establishing credentials
debug3: PAM: opening session
debug2: do_pam_session: auth information in SSH_AUTH_INFO_0
debug3: sshpam_store_conv: PAM: called with 1 messages
debug3: sshpam_store_conv: PAM: called with 1 messages
debug3: sshpam_store_conv: PAM: called with 1 messages
User child is on pid 644804
debug1: PAM: establishing credentials
debug1: permanently_set_uid: 1000/100
debug3: monitor_apply_keystate: packet_set_state
debug2: ssh_set_newkeys: mode 0
debug1: rekey in after 4294967296 blocks
debug2: ssh_set_newkeys: mode 1
debug1: rekey out after 4294967296 blocks
debug1: ssh_packet_set_postauth: called
debug3: ssh_packet_set_state: done
debug3: notify_hostkeys: key 0: ssh-rsa SHA256:8Hej8HhXYFgbbfCkxdP8BBJ9fa2mB0BHukafK2p+SDM
debug3: notify_hostkeys: key 1: ecdsa-sha2-nistp256 SHA256:fCfJ8NV2n/ynC0TXxsHWYSnqEv0lmXrp0fFj/F8tJ34
debug3: notify_hostkeys: key 2: ssh-ed25519 SHA256:afPTJUksIP6UOXoEyloLZD0T30pUOdLVecTrHjsYI00
debug3: notify_hostkeys: key 3: ssh-mldsa44-ed25519 at openssh.com SHA256:BBHy+cX+3ZzAjLldyj3H3Wq8KK5ZnPMc20T5iSx0los
debug3: notify_hostkeys: sent 4 hostkeys
debug3: send packet: type 80
debug1: active: key options: agent-forwarding port-forwarding pty user-rc x11-forwarding
debug1: Entering interactive session for SSH2.
debug1: server_init_dispatch
debug2: process_output: session QoS is now interactive
debug3: set_sock_tos: set socket 7 IP_TOS 0x10
debug3: receive packet: type 90
debug1: server_input_channel_open: ctype session rchan 0 win 1048576 max 16384
debug1: input_session_request
debug3: channel 0: classify type "(null)" (no TTY) as interactive
debug3: channel 0: classify type "session" (no TTY) as bulk
debug1: channel 0: new session [server-session] (inactive timeout: 0)
debug2: session_new: allocate (allocated 0 max 10)
debug3: session_unused: session id 0 unused
debug1: session_new: session 0
debug1: session_open: channel 0
debug1: session_open: session 0: link with channel 0
debug1: server_input_channel_open: confirm session
debug3: send packet: type 91
debug3: receive packet: type 80
debug1: server_input_global_request: rtype no-more-sessions at openssh.com want_reply 0
debug3: receive packet: type 98
debug1: server_input_channel_req: channel 0 request pty-req reply 1
debug1: session_by_channel: session 0 channel 0
debug1: session_input_channel_req: session 0 req pty-req
debug1: Allocating pty.
debug3: mm_request_send: entering, type 28
debug3: mm_pty_allocate: waiting for MONITOR_ANS_PTY
debug3: mm_request_receive_expect: entering, type 29
debug3: mm_request_receive: entering
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 28
debug3: mm_answer_pty: entering
debug2: session_new: allocate (allocated 0 max 10)
debug3: session_unused: session id 0 unused
debug1: session_new: session 0
debug1: SELinux support disabled
debug3: mm_request_send: entering, type 29
debug1: session_pty_req: session 0 alloc /dev/pts/4
debug3: mm_answer_pty: tty /dev/pts/4 ptyfd 10
debug3: send packet: type 99
debug3: receive packet: type 98
debug1: server_input_channel_req: channel 0 request env reply 0
debug1: session_by_channel: session 0 channel 0
debug1: session_input_channel_req: session 0 req env
debug2: Setting env 0: COLORTERM=truecolor
debug3: receive packet: type 98
debug1: server_input_channel_req: channel 0 request env reply 0
debug1: session_by_channel: session 0 channel 0
debug1: session_input_channel_req: session 0 req env
debug2: Setting env 1: LANG=en_US.UTF-8
debug3: receive packet: type 98
debug1: server_input_channel_req: channel 0 request shell reply 1
debug1: session_by_channel: session 0 channel 0
debug1: session_input_channel_req: session 0 req shell
debug3: channel 0: classify type "session:shell" (no TTY) as bulk
debug2: channel_set_xtype: labeled channel 0 as session:shell (inactive timeout 0)
Starting session: shell on pts/4 for sma-user1 from 192.168.69.115 port 55512 id 0
debug2: channel 0: rfd 13 isatty
debug2: fd 13 setting O_NONBLOCK
debug3: fd 11 is O_NONBLOCK
debug3: channel 0: classify type "session:shell" (with TTY) as interactive
debug3: send packet: type 99
debug1: Setting controlling tty using TIOCSCTTY.
debug3: Copy environment: XDG_SESSION_ID=c4
debug3: Copy environment: XDG_SESSION_TYPE=tty
debug3: Copy environment: XDG_SESSION_CLASS=user
debug3: Copy environment: XDG_SESSION_DESKTOP=gnome
debug3: Copy environment: XDG_SESSION_EXTRA_DEVICE_ACCESS=render:accel
debug3: Copy environment: HOME=/home/sma-user1
debug3: Copy environment: XDG_RUNTIME_DIR=/run/user/1000
debug3: Copy environment: DBUS_SESSION_BUS_ADDRESS=unix:path=/run/user/1000/bus
debug3: Copy environment: XDG_DATA_HOME=/home/sma-user1/.local/share
debug3: Copy environment: XDG_CACHE_HOME=/home/sma-user1/.cache
debug3: Copy environment: XDG_CONFIG_HOME=/home/sma-user1/.config
debug3: Copy environment: XDG_STATE_HOME=/home/sma-user1/.local/state
debug3: Copy environment: MOTD_SHOWN=pam
debug1: Received SIGCHLD.
debug1: session_by_pid: pid 644806
debug2: channel 0: request exit-status confirm 0
debug3: send packet: type 98
debug1: session_exit_message: session 0 channel 0 pid 644806 exit 0
debug1: session_exit_message: release channel 0
debug2: channel 0: write failed
debug2: chan_shutdown_write: channel 0: (i0 o0 sock -1 wfd 11 efd -1 [closed])
debug2: channel 0: send eow
debug3: send packet: type 98
debug2: channel 0: output open -> closed
debug3: mm_request_send: entering, type 30
debug2: channel 0: read failed rfd 13 maxlen 32768: Resource temporarily unavailable
debug2: channel 0: read failed
debug2: chan_shutdown_read: channel 0: (i0 o3 sock -1 wfd 13 efd -1 [closed])
debug2: channel 0: input open -> drain
debug3: mm_request_receive: entering
debug2: channel 0: ibuf empty
debug3: monitor_read: checking request 30
debug2: channel 0: send eof
debug3: mm_answer_pty_cleanup: entering
debug3: send packet: type 96
debug1: session_by_tty: session 0 tty /dev/pts/4
debug2: channel 0: input drain -> closed
debug3: mm_session_close: session 0 pid 644804
debug2: channel 0: send_close2
debug2: channel 0: send close for remote id 0
debug3: mm_session_close: tty /dev/pts/4 ptyfd 10
debug3: send packet: type 97
debug1: session_pty_cleanup2: session 0 release /dev/pts/4
debug3: channel 0: will not send data after close
debug3: receive packet: type 97
debug2: channel 0: rcvd close
debug3: channel 0: will not send data after close
debug2: channel 0: is dead
debug2: channel 0: gc: notify user
debug1: session_by_channel: session 0 channel 0
debug1: session_close_by_channel: channel 0 child 0
Close session: user sma-user1 from 192.168.69.115 port 55512 id 0
debug3: session_unused: session id 0 unused
debug2: channel 0: gc: user detached
debug2: channel 0: is dead
debug2: channel 0: garbage collecting
debug1: channel 0: free: server-session, nchannels 1
debug3: channel 0: status: The following connections are open:
#0 server-session (t4 [session:shell] r0 nm0 i3/0 o3/0 e[closed]/0 fd -1/-1/-1 sock -1 cc -1 nc0 io 0x00/0x00 TI)
debug3: receive packet: type 1
Received disconnect from 192.168.69.115 port 55512:11: disconnected by user
debug3: mm_request_send: entering, type 122
debug3: mm_request_receive_expect: entering, type 123
debug3: mm_request_receive: entering
syslogin_perform_logout: logout() returned an error
debug3: session_unused: session id 0 unused
debug3: mm_request_receive: entering
debug3: monitor_read: checking request 122
debug3: mm_request_send: entering, type 123
Disconnected from user sma-user1 192.168.69.115 port 55512
debug1: do_cleanup
debug3: sshpam_thread_cleanup: entering
debug1: temporarily_use_uid: 1000/100 (e=1000/100)
debug1: restore_uid: (unprivileged)
debug3: mm_request_receive: entering
debug3: mm_request_receive: monitor fd closed
debug1: mm_reap: child exited with status 255
debug1: do_cleanup
debug1: PAM: cleanup
debug1: PAM: closing session
debug1: PAM: deleting credentials
debug3: sshpam_thread_cleanup: entering
debug1: temporarily_use_uid: 1000/100 (e=0/0)
debug1: restore_uid: 0/0
More information about the openssh-unix-dev
mailing list