I have made a complete botch of trying to install both ssh and samba, having followed numerous tutorials - all claiming to be easy to follow and stating that it is easy.
The last attempt @ ssh was going really well until the copy id stage
This has been going on and off for many weeks and so what I now want to do is to achieve is a clean slate and a fresh start.
I have just a netbook and a desktop running on Ubuntu 11.10 and 12.04(desktop)
Please can anybody suggest a simple and certain way of achieving this and please without missing out even the basics e.g. the sudo command - PLEASE PLEASE!!
ssh (secure shell) is a replacement for remote terminal programs like "telnet", "rlogin", etc.. The difference to telnet is that the whole communication is encrypted so even if it is intercepted an intruder cannot gain anything from it.
Like telnet too it consists of two parts: a server- and a client-part. The client part initiates the communication. It is the program you call when you issue
The server part is named "sshd". You can find it in the process list by issuing
The server part will take the incoming communication requests and handle them.
The first thing you need to do is to configure the server part on a machine you want to connect to. This is done in the file "/etc/sshd_config" and you can find numerous examples for a simple yet working configuration. You need a startup routine so that "sshd" is started automatically at system startup (depends on the system), but for a first test it suffices to issue
as user root, which starts it in background.
Now let us consider we have two systems with a running server process and we want to connect from one to the other. We simply issue
and if everything is running correctly we are greeted with a login prompt and asked for a password ("user2" has to exist of course).
Because we would not want to enter the password every time we connect we can "create" and "exchange" keys: instead of passwords you can generate key sequences and put these on the other server. These keys reside in the directory "~/.ssh" (per default), which will be created when you generate such a key. Switch to the user you want to use and issue
and follow the prompts leaving everything at default. Use "RSA" as encryption mechanism. DO NOT enter a password when asked but instead press "ENTER". You will see some files in this directory now:
The file "id_rsa.pub" is your public key. Suppose you want to connect from host "host2" as user "user2" to this host as user "user1". Open another window in which you connect to "host2" as "user2". Then create a file "~/.ssh/authorized_keys" into which you paste the contents of the aforementioned file "id_rsa.pub"
You are now able to remotely log in to "host1" as "user1" from here. If you want to be able to connect to another host as another user (or even the same host as another user) you have to create a keyfile with this other user and put it also into the file "authorized_keys". This file can hold as many keys as you want, you just put one after the other.
Note that if user1@host1 is allowed to connect to "host2" as "user2", this does not mean that the other direction is allowed to. "user2@host2" will still have to enter the password if he wants to connect to "host1" as "user1" - you will again have to create the key file and put it in the file "authorized_keys" of the other user to enable passwordless login in the other direction.
I hope this helps.
bakunin
These 2 Users Gave Thanks to bakunin For This Post:
To be honest i am not sure if i can simplify the matter any further. A certain minimum of knowledge is necessary if you want to do any - even the most basic - act of system administration.
Quote:
Originally Posted by Royalist
Did that on client.
Result: ”ssh: connect to host 192.168.1.xx port 22: Connection refused
OK. This might have several reasons:
1. The server process doesn't run on the system you want to connect to. For a working connection you need the client program on your local system and the server part on your remote system.
2. The server part tuns but listens to another port. 22 is the default port, but sshd can be configured to use another one instead.
3. The user ID you use ("roy") is not allowed to log on to the system.
4. Maybe some other reason i forgot.
Quote:
Originally Posted by Royalist
Did that without the # and this was the result:
First off: what you see here is not the sshd process, but the grep, which of course finds itself running. My example has 2 lines of output as you can see: the running "sshd" and the "grep". Yours has only the "grep" which means, "sshd" is not running at all.
Furthermore, you probably issued this on your client. As said above the server part needs to run on the remote system, not your local one.
Quote:
Originally Posted by Royalist
Did that on desktop/server, but no result, had to stop it in the end with 'cntrl C'
What do you mean by "no result"? Was there any output? Did you try to connect to the system while this process was running? Did you still get the "connection refused" error in this time?
Quote:
Did that: 'command not found'
Please note: The "#" is the command prompt. Yours probably looks different. When i write:
i simply mean: become user "user1" at host "host1", then issue "/some/command" on the command line.
Quote:
CAN YOU TELL ME PLEASE HOW TO WIPE THE SLATE CLEAN and to make a fresh start in language a genuine newbie can understand.
Sorry, but i can't. I can't explain someone the difference between "dark green" and "light green" who was blind from birth either. There is a certain minimum of knowledge about computers and how computers work necessary to at least understand and carry out basic commands. The best advice i can give you is: get someone knowledgeable to install it for you - or get the knowledge yourself. Both won't be possible over the net in a forum.
I have the ssh daemon running.
Thank you very much for spending so much time on what you clearly thought was a hopeless case.
I do appreciate your quaint turn of phrase:
Quote:
explain someone the difference between "dark green" and "light green" who was blind from birth either
However, I don't give up that easily. You maybe surprised to know that I have been learning (by using it) Linux terminal commands for more than a year and I have had a number of years of experience of other systems and computers in general.
It has taken many hours to reach this point and I am taking a break now, but will perservere later in following your later instructions. If you wish to be informed?
Again, very many thanks!!!
I would suggest you to not blindly follow tutorials you find on the net.
Try to understand what they are doing and apply to your system only if you understand what they are doing.
Obviously you can fresh start by getting a dvd from ubuntu and reinstalling your system, but take into account that perhaps some of the hardware not being recognized by default. In that case you will need someone to help you to get you system working another time.
Yes, I have learnt that the hard way. There is so much conflicting advice. I have now begun to understand better the 'man' pages which is a great help and now have a working
files.
I have found that setting LogLevel to debugg2 a great help.
I am now working on finding ways of transferring the pubkey. I think it will be necessary to temporarily allow password authentication to achieve that. Any comments on that please, or anything else?
Thanks for your advice.
The situation: i have a AD server with samba4,all clients
ssh-kerberos works fine,except hpux :p wich works
only for few days..then i must re-export(sic!) the keys with
samba-tool domain exportkeytab 11.keytab --principal=host/hpux.fqdn
Why after few days ssh return error "server not found... (1 Reply)
Hi all, I'm trying to update my samba 3.5.10 to 3.6.5 due to security CVE issued with 3.5.
I downloaded and unzipped, did the make and make install and the ./configure.
I didn't use any changes to it and it said it installed correctly added it to my path and it looks like it's operating... (6 Replies)
I have created an LPAR and the next step is to get SAMBA installed, I have mounted our NIM server up and copied over the SAMBA binaries .bff files. How do i install these? i tried doing this through SMIT but had no luck..? Any help would be greatly appreciated. AIX OS 6.1 (2 Replies)
Hi I have an issue with a client. He was able to use his mounted Samba share for a long time. However, a couple of days ago, he wasn't able to access all of his files all of a sudden. He still see's the share and majority of the files, but not some that he needs.
I checked with Secure CRT on... (1 Reply)
Hi all.
I'm having real trouble authenticating users against active directory for my SCO UnixWare 7.1.4 box running samba 3.0.24 (installed via Maintenance pack 4). I can list AD users/groups (after overcoming several hiccups) with wbinfo -g / wbinfo -u. I can use id to get a view an ad user ie:... (0 Replies)
hi
Recently the above option has stopped working all together. On clicking on this option it appears as though the window will open as the outline of the box appears but nothing more.
On running this from a command prompt within the GUI , I get the following error:
The last line... (0 Replies)
I am trying to ssh into a remote sun server, however I get X11 forwarding error. I have checked sshd_config file and X11 forwarding is enabled.
Also xhost command doesnt give any output, it doesnt even return the prompt.I have to Ctrl C out of the situation. any suggestions anyone?? (1 Reply)
i am run SUSE 6.4 with apache that i built and maintain to serve my dads website, (www.farragutmarine.com for anyone who cares) anyway i am running samba and i have a huge problem, throughout the day, everything goes fine, but then my server will come to a grinding halt, if i try to telnet in or... (4 Replies)