• [^] # Re: Tls or ssl ?

    Posté par . En réponse au message Connexion SHH fail avec LDAPS. Évalué à 1.

    Le LDAPS est en SSL. la commande ldapsearch fonctionne. Il n'y a pas d'erreur dans la log du LDAP. Comme noté dans mon poste, je pense que c'est un problème c'est un problème de compatibilité d'encryption entre LDAPS et SHH :


    ssh -vvv coco@ldapclient

    .../...
    debug3: Wrote 64 bytes for a total of 1127
    debug1: Authentications that can continue: publickey,password
    debug3: start over, passed a different list publickey,password
    debug3: preferred gssapi-keyex,gssapi-with-mic,gssapi,publickey,keyboard-interactive,password
    debug3: authmethod_lookup publickey
    debug3: remaining preferred: keyboard-interactive,password
    debug3: authmethod_is_enabled publickey
    debug1: Next authentication method: publickey
    debug1: Trying private key: /home/xxx/.ssh/identity
    debug3: no such identity: /home/xxx/.ssh/identity
    debug1: Trying private key: /home/xxx/.ssh/id_rsa
    debug3: no such identity: /home/xxx/.ssh/id_rsa
    debug1: Trying private key: /home/xxx/.ssh/id_dsa
    debug3: no such identity: /home/xxx/.ssh/id_dsa
    debug2: we did not send a packet, disable method
    debug3: authmethod_lookup password
    debug3: remaining preferred: ,password
    debug3: authmethod_is_enabled password
    debug1: Next authentication method: password
    coco@ldapclient's password:
    debug3: packet_send2: adding 64 (len 53 padlen 11 extra_pad 64)
    debug2: we sent a password packet, wait for reply
    debug3: Wrote 144 bytes for a total of 1271
    debug1: Authentications that can continue: publickey,password
    Permission denied, please try again.
    coco@ldapclient's password:



    Mais a ce niveau je ne vois pas ou je pourrais investiguer