Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Man in the Middle
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
bll0
Apprentice
Apprentice


Joined: 22 May 2004
Posts: 178

PostPosted: Tue Oct 26, 2004 6:45 am    Post subject: Man in the Middle Reply with quote

Hi there!

I've set up a ssh-server on my machine and know I am able to log into into (as you might know ;) ) from a distance by a dyndns-account.

But since yesterday I got an error - message that the rsa-key identifying my server is invalid and that there might be a "man in the middle".

I would be pleased if someone could tell me something about this, or post a link or can give me some information about what can I do.

Thanks a lot, the "man at one end"

-Azazel
Back to top
View user's profile Send private message
jhgz1
Retired Dev
Retired Dev


Joined: 16 Dec 2003
Posts: 115
Location: Gainesville

PostPosted: Tue Oct 26, 2004 7:02 am    Post subject: Reply with quote

this means that keys where changed, either by an authorized or unauthorized person. if you are sure your machine is not compromised, remove the old key from the client and again connect to the server as before.
_________________
Bei Gentoo mithelfen wollen und kein Programmierer? Gentoo sucht Übersetzer, die bereit sind kontinuierlich mitzuarbeiten.
Back to top
View user's profile Send private message
CaT
n00b
n00b


Joined: 18 Oct 2004
Posts: 30

PostPosted: Tue Oct 26, 2004 7:28 am    Post subject: Reply with quote

hi

some informations about mim:
http://en.wikipedia.org/wiki/Man_in_the_middle
Back to top
View user's profile Send private message
bll0
Apprentice
Apprentice


Joined: 22 May 2004
Posts: 178

PostPosted: Tue Oct 26, 2004 12:56 pm    Post subject: Reply with quote

Well, now I know what a man in the middle is, but how can I do something AGAINST it??? Because I would like to use my sshd without beeing spyed by someone else.

I'm not sure if the message of ssh is wrong, I'm also not sure if it is safe do connect to my computer through a ssh-tunnel.

So, what can I do??
_________________
I need a girl whose name doesn't end in .jpg
Back to top
View user's profile Send private message
josh_Borke
n00b
n00b


Joined: 26 Oct 2004
Posts: 5

PostPosted: Tue Oct 26, 2004 1:05 pm    Post subject: Reply with quote

i would generate a new key on the server, and copy it to your client (other than over the network), so that you can be sure that it is not comprimised(sp?) and then try connecting to your server. That way you can be sure if you are indeed suffering from a man-in-the-middle attack. If you continue to receive messages, I would make sure that the key wasn't being changed on the server. HTH

-josh
Back to top
View user's profile Send private message
bll0
Apprentice
Apprentice


Joined: 22 May 2004
Posts: 178

PostPosted: Tue Oct 26, 2004 2:46 pm    Post subject: Reply with quote

This seems to be a solution. But how do create that key? something with gpg or ssh?

Would be nice if you would tell me!

Thanks a lot!
Back to top
View user's profile Send private message
codemaker
Guru
Guru


Joined: 03 Jun 2004
Posts: 398
Location: Lisboa, Portugal

PostPosted: Tue Oct 26, 2004 3:41 pm    Post subject: Reply with quote

man ssh-keygen might do the trick
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum