IdentityFile vs IdentitiesOnly

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



Hi folks,

I've got a moderate number of keys in my ssh config file.
Problem: Very often I get an error message like

Received disconnect from 2001:db8::8077 port 999:2: Too many authentication failures
Authentication failed.

AFAIU the ssh-agent is to blame here, trying out all keys
he has ever seen. This conflicts with MaxAuthTries 6, set by
default on the peer.

The solution seems to be to set IdentitiesOnly, e.g.:

	:
	:
	Host host.example.com 2001:db8::8077
		IdentityFile ~/.ssh/id_ecdsa
		IdentitiesOnly yes
		Port 999
	:
	:

Shouldn't an explicit IdentityFile (as in the example) *imply*
IdentitiesOnly?


Every helpful comment is highly appreciated
Harri
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev



[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux