[lug] ssh warning

Hugh Brown hugh at vecna.com
Mon Sep 17 08:56:50 MDT 2001


the public key on the host you are connecting to has a different public key
could mean a number of things. Changed ssh to openssh and did new keys,
someone hacked the server and put a new ssh setup in, someone really is
doing a man in the middle attack, etc.  If you are concerned, you should
contact the administrator and ask for the new key.

Hugh


"dan radom"
> 
> delete the entry in ~/.ssk/known_hosts (or known_hosts2) for that host.  this means that the public key on the host you're connecting to has changed.
> 
> dan
> 
> * Glenn Murray (gmurray at Mines.EDU) wrote:
> > Hi,
> > 
> > When I tried to ssh to my cvs server this morning I was told:
> > 
> > @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
> > @    WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED!     @
> > @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
> > IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
> > Someone could be eavesdropping on you right now (man-in-the-middle attack)!
> > It is also possible that the RSA host key has just been changed.
> > Please contact your system administrator.
> > Add correct host key in /home/glenn/.ssh/known_hosts to get rid of this message.
> > 
> > I am not the administrator on the server and I am not sure what to do.
> > Does this mean that the administrators on the server changed
> > something?  Does it mean I have been hacked?  Who is responsible for
> > the RSA host key?



More information about the LUG mailing list