IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: "too many auth failures"?



On Wed, Oct 27, 2010 at 03:06:35PM +1300, Peter Gutmann wrote:
> Nicolas Williams <Nicolas.Williams%oracle.com@localhost> writes:
> 
> >I also hate the fact that keyex is not re-tryiable.
> 
> Wouldn't that defeat having a retry counter?

The two issues are unrelated.  The SSHv2 initial key exchange cannot be
retried if it fails.  It can only really fail if you use the SSHv2 w/
GSS-API keyex, and it does happen, often because of Kerberos
configuration issues.



Home | Main Index | Thread Index | Old Index