auton login is giving me trouble

Predrag Punosevac predragp at andrew.cmu.edu
Thu Jan 7 13:01:38 EST 2021


Hi Viraj,

Thank you so much for bringing this to my attention.  I am CC-ing users as
this is of wider interest. It appears that OpenVPN daemon has died on all
desktops over the night.  That renders 2 out of three gateways (bash and
lion) unusable. I just fixed them.

The probable cause of OpenVPN failure is a hiccup at the university
network. I see these things regularly but typically not on VPN gateway
machine. Unfortunately

When it doubt always try lop2.autonlab.org gateway first.  For people who
have Auton Lab desktops. Please log as a root (It will take a long time
since DNS is broken) and issue the following commands

systemctl restart openvpn-client at autonlab
mount -a





Cheers,
Predrag

On Thu, Jan 7, 2021 at 10:51 AM Viraj Mehta <virajm at cs.cmu.edu> wrote:

> Sorry bout that. I've pasted the dump from ssh -v below. I'm not super
> familiar with the normal functioning of the SSH protocol but it seems like
> it's still finding the key I put on the server and I'm not sure why that's
> not enough to get in afterwards. Thanks for the help.
>
> Viraj
>
> OpenSSH_7.6p1 Ubuntu-4ubuntu0.3, OpenSSL 1.0.2n  7 Dec 2017
> debug1: Reading configuration data /home/viraj/.ssh/config
> debug1: /home/viraj/.ssh/config line 1: Applying options for auton
> debug1: Reading configuration data /etc/ssh/ssh_config
> debug1: /etc/ssh/ssh_config line 19: Applying options for *
> debug1: Connecting to bash.autonlab.org [128.2.177.47] port 22.
> debug1: Connection established.
> debug1: identity file /home/viraj/.ssh/id_rsa type 0
> debug1: key_load_public: No such file or directory
> debug1: identity file /home/viraj/.ssh/id_rsa-cert type -1
> debug1: Local version string SSH-2.0-OpenSSH_7.6p1 Ubuntu-4ubuntu0.3
> debug1: Remote protocol version 2.0, remote software version OpenSSH_7.4
> debug1: match: OpenSSH_7.4 pat OpenSSH* compat 0x04000000
> debug1: Authenticating to bash.autonlab.org:22 as 'virajm'
> debug1: SSH2_MSG_KEXINIT sent
> debug1: SSH2_MSG_KEXINIT received
> debug1: kex: algorithm: curve25519-sha256
> debug1: kex: host key algorithm: ecdsa-sha2-nistp256
> debug1: kex: server->client cipher: chacha20-poly1305 at openssh.com MAC:
> <implicit> compression: none
> debug1: kex: client->server cipher: chacha20-poly1305 at openssh.com MAC:
> <implicit> compression: none
> debug1: expecting SSH2_MSG_KEX_ECDH_REPLY
> debug1: Server host key: ecdsa-sha2-nistp256
> SHA256:Pf/uiR0Hzw9HpSNaf3/fRXon9gdXFes5KP7HEobNaW4
> debug1: Host 'bash.autonlab.org' is known and matches the ECDSA host key.
> debug1: Found key in /home/viraj/.ssh/known_hosts:2
> debug1: rekey after 134217728 blocks
> debug1: SSH2_MSG_NEWKEYS sent
> debug1: expecting SSH2_MSG_NEWKEYS
> debug1: SSH2_MSG_NEWKEYS received
> debug1: rekey after 134217728 blocks
> debug1: SSH2_MSG_EXT_INFO received
> debug1: kex_input_ext_info: server-sig-algs=<rsa-sha2-256,rsa-sha2-512>
> debug1: SSH2_MSG_SERVICE_ACCEPT received
> debug1: Authentications that can continue:
> publickey,gssapi-keyex,gssapi-with-mic,password
> debug1: Next authentication method: gssapi-keyex
> debug1: No valid Key exchange context
> debug1: Next authentication method: gssapi-with-mic
> debug1: Unspecified GSS failure.  Minor code may provide more information
> No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_1000)
>
> debug1: Unspecified GSS failure.  Minor code may provide more information
> No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_1000)
>
> debug1: Next authentication method: publickey
> debug1: Offering public key: RSA
> SHA256:C3kyuqLEyboBW4ZomyN7bOSyIhu3PPQThQylT2sTzaI /home/viraj/.ssh/id_rsa
> debug1: Authentications that can continue:
> publickey,gssapi-keyex,gssapi-with-mic,password
> debug1: Next authentication method: password
> virajm at bash.autonlab.org's password:
> debug1: Authentications that can continue:
> publickey,gssapi-keyex,gssapi-with-mic,password
> Permission denied, please try again.
> virajm at bash.autonlab.org's password:
> Connection closed by 128.2.177.47 port 22
>
> On Thu, Jan 7, 2021 at 9:36 AM Predrag Punosevac <predragp at andrew.cmu.edu>
> wrote:
>
>> The system was working as designed as recently as late last night. I will
>> check it in an hour again. However, you problem report or rather lack of it
>> doesn't give me much to  work with. Do you know how to use -v option and
>> increase verbosity of ssh?
>>
>> On Thu, Jan 7, 2021, 9:55 AM Viraj Mehta <virajm at cs.cmu.edu> wrote:
>>
>>> Hi Predrag,
>>>
>>> Hope you're well and happy new year. This morning I have been having a
>>> hard time logging into the cluster, as it seems to be ignoring the ssh keys
>>> I typically use and is also not accepting my password. Do you know why that
>>> might be happening? I haven't been doing anything atypical and definitely
>>> haven't messed with any ssh settings or configuration.
>>>
>>> Thanks,
>>> Viraj
>>>
>>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.srv.cs.cmu.edu/pipermail/autonlab-users/attachments/20210107/b4ac7021/attachment.html>


More information about the Autonlab-users mailing list