[Bug 686607] [NEW] ssh client should mention ssh-keygen on mismatched keys

Scott Moser smoser at canonical.com
Tue Dec 7 15:10:42 GMT 2010


Public bug reported:

The following is a very common message for ssh users to see

$ ssh kearney
The authenticity of host 'kearney (192.168.1.131)' can't be established.
RSA key fingerprint is c5:43:dd:69:56:82:2c:30:4c:03:57:45:aa:de:26:31.
Are you sure you want to continue connecting (yes/no)? yes
Warning: Permanently added 'kearney' (RSA) to the list of known hosts.
Warning: the RSA host key for 'kearney' differs from the key for the IP address '192.168.1.131'
Offending key for IP in /home/smoser/.ssh/known_hosts:657
Are you sure you want to continue connecting (yes/no)? yes

Almost all users have figured out that they have to open 'known_hosts',
go to line 657 and delete the entry when they know that the host has
changed.

What most people don't know is that they can run:
  ssh-keygen -f ~/.ssh/known_hosts -R kearney

to do the same thing.

We can increase the discoverability of ssh-keygen's function for editing
known_hosts by adding mention of it to the message.

ProblemType: Bug
DistroRelease: Ubuntu 11.04
Package: openssh-client 1:5.6p1-2ubuntu1
ProcVersionSignature: Ubuntu 2.6.37-7.19-generic 2.6.37-rc3
Uname: Linux 2.6.37-7-generic x86_64
Architecture: amd64
Date: Tue Dec  7 09:51:28 2010
EcryptfsInUse: Yes
InstallationMedia: Ubuntu 10.04 "Lucid Lynx" - Beta amd64 (20100318)
ProcEnviron:
 PATH=(custom, user)
 LANG=en_US.utf8
 SHELL=/bin/bash
SourcePackage: openssh

** Affects: openssh (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: amd64 apport-bug natty

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in ubuntu.
https://bugs.launchpad.net/bugs/686607

Title:
  ssh client should mention ssh-keygen on mismatched keys



More information about the Ubuntu-server-bugs mailing list