Advertisement
Guest User

Untitled

a guest
May 10th, 2017
556
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 35.31 KB | None | 0 0
  1.  
  2. Jan 12 10:14:42 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  3. Jan 12 10:14:42 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  4. Jan 12 10:14:42 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  5. Jan 12 10:14:44 LINUXSERV sshd[27300]: debug3: Normalising mapped IPv4 in IPv6 address
  6. Jan 12 10:14:44 LINUXSERV sshd[27300]: Connection closed by 71.199.154.140
  7. Jan 12 10:14:44 LINUXSERV sshd[27300]: debug1: do_cleanup
  8. Jan 12 10:14:44 LINUXSERV sshd[27300]: debug3: PAM: sshpam_thread_cleanup entering
  9. Jan 12 10:14:44 LINUXSERV sshd[27299]: debug1: do_cleanup
  10. Jan 12 10:14:44 LINUXSERV sshd[27299]: debug1: PAM: cleanup
  11. Jan 12 10:14:44 LINUXSERV sshd[27299]: debug3: PAM: sshpam_thread_cleanup entering
  12. Jan 12 10:14:45 LINUXSERV sshd[27294]: debug3: fd 4 is not O_NONBLOCK
  13. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: rexec start in 4 out 4 newsock 4 pipe 6 sock 7
  14. Jan 12 10:14:45 LINUXSERV sshd[27294]: debug1: Forked child 27312.
  15. Jan 12 10:14:45 LINUXSERV sshd[27294]: debug3: send_rexec_state: entering fd = 7 config len 532
  16. Jan 12 10:14:45 LINUXSERV sshd[27294]: debug3: ssh_msg_send: type 0
  17. Jan 12 10:14:45 LINUXSERV sshd[27294]: debug3: send_rexec_state: done
  18. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: inetd sockets after dupping: 3, 3
  19. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: Normalising mapped IPv4 in IPv6 address
  20. Jan 12 10:14:45 LINUXSERV sshd[27312]: Connection from 71.199.154.140 port 33056
  21. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: Client protocol version 2.0; client software version OpenSSH_5.2p1 Debian-1ubuntu1
  22. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: match: OpenSSH_5.2p1 Debian-1ubuntu1 pat OpenSSH*
  23. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: Enabling compatibility mode for protocol 2.0
  24. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug1: Local version string SSH-2.0-OpenSSH_4.3
  25. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug2: fd 3 setting O_NONBLOCK
  26. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: privsep user:group 74:74
  27. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: permanently_set_uid: 74/74
  28. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: list_hostkey_types: ssh-rsa,ssh-dss
  29. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: SSH2_MSG_KEXINIT sent
  30. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug2: Network child is on pid 27313
  31. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: preauth child monitor started
  32. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  33. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: SSH2_MSG_KEXINIT received
  34. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1
  35. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: ssh-rsa,ssh-dss
  36. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour128,arcfour256,arcfour,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr
  37. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour128,arcfour256,arcfour,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr
  38. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  39. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  40. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: none,zlib@openssh.com
  41. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: none,zlib@openssh.com
  42. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit:
  43. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit:
  44. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: first_kex_follows 0
  45. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: reserved 0
  46. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1
  47. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: ssh-rsa,ssh-dss
  48. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,rijndael-cbc@lysator.liu.se
  49. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,rijndael-cbc@lysator.liu.se
  50. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,umac-64@openssh.com,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  51. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,umac-64@openssh.com,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  52. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: none,zlib@openssh.com,zlib
  53. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: none,zlib@openssh.com,zlib
  54. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit:
  55. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit:
  56. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: first_kex_follows 0
  57. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: kex_parse_kexinit: reserved 0
  58. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: mac_init: found hmac-md5
  59. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: kex: client->server aes128-ctr hmac-md5 none
  60. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: mac_init: found hmac-md5
  61. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: kex: server->client aes128-ctr hmac-md5 none
  62. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: SSH2_MSG_KEX_DH_GEX_REQUEST received
  63. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 0
  64. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 0
  65. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: mm_answer_moduli: got parameters: 1024 1024 8192
  66. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: mm_request_send entering: type 1
  67. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug2: monitor_read: 0 used once, disabling now
  68. Jan 12 10:14:45 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  69. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: mm_choose_dh: waiting for MONITOR_ANS_MODULI
  70. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: mm_request_receive_expect entering: type 1
  71. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: mm_request_receive entering
  72. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug3: mm_choose_dh: remaining 0
  73. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: SSH2_MSG_KEX_DH_GEX_GROUP sent
  74. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: dh_gen_key: priv key bits set: 131/256
  75. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug2: bits set: 547/1024
  76. Jan 12 10:14:45 LINUXSERV sshd[27313]: debug1: expecting SSH2_MSG_KEX_DH_GEX_INIT
  77. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: bits set: 519/1024
  78. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_key_sign entering
  79. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 5
  80. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 5
  81. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_sign
  82. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_sign: signature 0x2b2a7dd69c40(271)
  83. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_send entering: type 6
  84. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug2: monitor_read: 5 used once, disabling now
  85. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  86. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_key_sign: waiting for MONITOR_ANS_SIGN
  87. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive_expect entering: type 6
  88. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive entering
  89. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: SSH2_MSG_KEX_DH_GEX_REPLY sent
  90. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: kex_derive_keys
  91. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: set_newkeys: mode 1
  92. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: SSH2_MSG_NEWKEYS sent
  93. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: expecting SSH2_MSG_NEWKEYS
  94. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: set_newkeys: mode 0
  95. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: SSH2_MSG_NEWKEYS received
  96. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: KEX done
  97. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: userauth-request for user tj service ssh-connection method none
  98. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: attempt 0 failures 0
  99. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_getpwnamallow entering
  100. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 7
  101. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 7
  102. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_pwnamallow
  103. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_pwnamallow: sending MONITOR_ANS_PWNAM: 1
  104. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_send entering: type 8
  105. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug2: monitor_read: 7 used once, disabling now
  106. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  107. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_getpwnamallow: waiting for MONITOR_ANS_PWNAM
  108. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive_expect entering: type 8
  109. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive entering
  110. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: input_userauth_request: setting up authctxt for tj
  111. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_start_pam entering
  112. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 46
  113. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 46
  114. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_inform_authserv entering
  115. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: PAM: initializing for "tj"
  116. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 3
  117. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: Normalising mapped IPv4 in IPv6 address
  118. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: Trying to reverse map address 71.199.154.140.
  119. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_inform_authrole entering
  120. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 4
  121. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: input_userauth_request: try method none
  122. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: PAM: setting PAM_RHOST to "c-71-199-154-140.hsd1.ga.comcast.net"
  123. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: PAM: setting PAM_TTY to "ssh"
  124. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug2: monitor_read: 46 used once, disabling now
  125. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  126. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 3
  127. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_authserv: service=ssh-connection, style=
  128. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug2: monitor_read: 3 used once, disabling now
  129. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  130. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 4
  131. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_authrole: role=
  132. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug2: monitor_read: 4 used once, disabling now
  133. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  134. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: userauth-request for user tj service ssh-connection method publickey
  135. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug1: attempt 1 failures 1
  136. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: input_userauth_request: try method publickey
  137. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_key_allowed entering
  138. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_send entering: type 21
  139. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: monitor_read: checking request 21
  140. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_keyallowed entering
  141. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_keyallowed: key_from_blob: 0x2b2a7dd71900
  142. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: temporarily_use_uid: 500/500 (e=0/0)
  143. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: trying public key file /home/tj/.ssh/authorized_keys
  144. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: restore_uid: 0/0
  145. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: temporarily_use_uid: 500/500 (e=0/0)
  146. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: trying public key file /home/tj/.ssh/authorized_keys2
  147. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug1: restore_uid: 0/0
  148. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_key_allowed: waiting for MONITOR_ANS_KEYALLOWED
  149. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: Normalising mapped IPv4 in IPv6 address
  150. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive_expect entering: type 22
  151. Jan 12 10:14:46 LINUXSERV sshd[27312]: Failed publickey for tj from 71.199.154.140 port 33056 ssh2
  152. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug3: mm_request_receive entering
  153. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_answer_keyallowed: key 0x2b2a7dd71900 is disallowed
  154. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_send entering: type 22
  155. Jan 12 10:14:46 LINUXSERV sshd[27312]: debug3: mm_request_receive entering
  156. Jan 12 10:14:46 LINUXSERV sshd[27313]: debug2: userauth_pubkey: authenticated 0 pkalg ssh-rsa
  157. Jan 12 10:14:47 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  158. Jan 12 10:14:47 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  159. Jan 12 10:14:47 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  160. Jan 12 10:14:51 LINUXSERV sshd[27313]: debug3: Normalising mapped IPv4 in IPv6 address
  161. Jan 12 10:14:51 LINUXSERV sshd[27313]: Connection closed by 71.199.154.140
  162. Jan 12 10:14:51 LINUXSERV sshd[27313]: debug1: do_cleanup
  163. Jan 12 10:14:51 LINUXSERV sshd[27313]: debug3: PAM: sshpam_thread_cleanup entering
  164. Jan 12 10:14:51 LINUXSERV sshd[27312]: debug1: do_cleanup
  165. Jan 12 10:14:51 LINUXSERV sshd[27312]: debug1: PAM: cleanup
  166. Jan 12 10:14:51 LINUXSERV sshd[27312]: debug3: PAM: sshpam_thread_cleanup entering
  167. Jan 12 10:14:51 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  168. Jan 12 10:14:51 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  169. Jan 12 10:14:51 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  170. Jan 12 10:14:55 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  171. Jan 12 10:14:55 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  172. Jan 12 10:14:55 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  173. Jan 12 10:14:59 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  174. Jan 12 10:14:59 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  175. Jan 12 10:14:59 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  176. Jan 12 10:15:03 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  177. Jan 12 10:15:03 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  178. Jan 12 10:15:03 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  179. Jan 12 10:15:06 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  180. Jan 12 10:15:06 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  181. Jan 12 10:15:06 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  182. Jan 12 10:15:06 LINUXSERV sshd[27294]: debug3: fd 4 is not O_NONBLOCK
  183. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: rexec start in 4 out 4 newsock 4 pipe 6 sock 7
  184. Jan 12 10:15:06 LINUXSERV sshd[27294]: debug1: Forked child 27319.
  185. Jan 12 10:15:06 LINUXSERV sshd[27294]: debug3: send_rexec_state: entering fd = 7 config len 532
  186. Jan 12 10:15:06 LINUXSERV sshd[27294]: debug3: ssh_msg_send: type 0
  187. Jan 12 10:15:06 LINUXSERV sshd[27294]: debug3: send_rexec_state: done
  188. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: inetd sockets after dupping: 3, 3
  189. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug3: Normalising mapped IPv4 in IPv6 address
  190. Jan 12 10:15:06 LINUXSERV sshd[27319]: Connection from 71.199.154.140 port 33060
  191. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: Client protocol version 2.0; client software version OpenSSH_5.2p1 Debian-1ubuntu1
  192. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: match: OpenSSH_5.2p1 Debian-1ubuntu1 pat OpenSSH*
  193. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: Enabling compatibility mode for protocol 2.0
  194. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug1: Local version string SSH-2.0-OpenSSH_4.3
  195. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug2: fd 3 setting O_NONBLOCK
  196. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug3: privsep user:group 74:74
  197. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: permanently_set_uid: 74/74
  198. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: list_hostkey_types: ssh-rsa,ssh-dss
  199. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: SSH2_MSG_KEXINIT sent
  200. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug2: Network child is on pid 27320
  201. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug3: preauth child monitor started
  202. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  203. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: SSH2_MSG_KEXINIT received
  204. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1
  205. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: ssh-rsa,ssh-dss
  206. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour128,arcfour256,arcfour,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr
  207. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour128,arcfour256,arcfour,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr
  208. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  209. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  210. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: none,zlib@openssh.com
  211. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: none,zlib@openssh.com
  212. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit:
  213. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit:
  214. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: first_kex_follows 0
  215. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: reserved 0
  216. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1
  217. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: ssh-rsa,ssh-dss
  218. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,rijndael-cbc@lysator.liu.se
  219. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,aes192-cbc,aes256-cbc,arcfour,rijndael-cbc@lysator.liu.se
  220. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,umac-64@openssh.com,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  221. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: hmac-md5,hmac-sha1,umac-64@openssh.com,hmac-ripemd160,hmac-ripemd160@openssh.com,hmac-sha1-96,hmac-md5-96
  222. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: none,zlib@openssh.com,zlib
  223. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: none,zlib@openssh.com,zlib
  224. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit:
  225. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit:
  226. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: first_kex_follows 0
  227. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: kex_parse_kexinit: reserved 0
  228. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: mac_init: found hmac-md5
  229. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: kex: client->server aes128-ctr hmac-md5 none
  230. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug2: mac_init: found hmac-md5
  231. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: kex: server->client aes128-ctr hmac-md5 none
  232. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug1: SSH2_MSG_KEX_DH_GEX_REQUEST received
  233. Jan 12 10:15:06 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 0
  234. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 0
  235. Jan 12 10:15:06 LINUXSERV sshd[27319]: debug3: mm_answer_moduli: got parameters: 1024 1024 8192
  236. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 1
  237. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 0 used once, disabling now
  238. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  239. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_choose_dh: waiting for MONITOR_ANS_MODULI
  240. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 1
  241. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  242. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_choose_dh: remaining 0
  243. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: SSH2_MSG_KEX_DH_GEX_GROUP sent
  244. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: dh_gen_key: priv key bits set: 134/256
  245. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: bits set: 492/1024
  246. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: expecting SSH2_MSG_KEX_DH_GEX_INIT
  247. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: bits set: 544/1024
  248. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_key_sign entering
  249. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 5
  250. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 5
  251. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_sign
  252. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_sign: signature 0x2b88d5993c40(271)
  253. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 6
  254. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 5 used once, disabling now
  255. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  256. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_key_sign: waiting for MONITOR_ANS_SIGN
  257. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 6
  258. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  259. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: SSH2_MSG_KEX_DH_GEX_REPLY sent
  260. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: kex_derive_keys
  261. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: set_newkeys: mode 1
  262. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: SSH2_MSG_NEWKEYS sent
  263. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: expecting SSH2_MSG_NEWKEYS
  264. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: set_newkeys: mode 0
  265. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: SSH2_MSG_NEWKEYS received
  266. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: KEX done
  267. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: userauth-request for user root service ssh-connection method none
  268. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: attempt 0 failures 0
  269. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_getpwnamallow entering
  270. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 7
  271. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 7
  272. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_pwnamallow
  273. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_pwnamallow: sending MONITOR_ANS_PWNAM: 1
  274. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 8
  275. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 7 used once, disabling now
  276. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  277. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_getpwnamallow: waiting for MONITOR_ANS_PWNAM
  278. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 8
  279. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  280. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: input_userauth_request: setting up authctxt for root
  281. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_start_pam entering
  282. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 46
  283. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 46
  284. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_inform_authserv entering
  285. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: PAM: initializing for "root"
  286. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 3
  287. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: Normalising mapped IPv4 in IPv6 address
  288. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: Trying to reverse map address 71.199.154.140.
  289. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_inform_authrole entering
  290. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 4
  291. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: input_userauth_request: try method none
  292. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: PAM: setting PAM_RHOST to "c-71-199-154-140.hsd1.ga.comcast.net"
  293. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: PAM: setting PAM_TTY to "ssh"
  294. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 46 used once, disabling now
  295. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  296. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 3
  297. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_authserv: service=ssh-connection, style=
  298. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 3 used once, disabling now
  299. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  300. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 4
  301. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_authrole: role=
  302. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug2: monitor_read: 4 used once, disabling now
  303. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  304. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: userauth-request for user root service ssh-connection method publickey
  305. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug1: attempt 1 failures 1
  306. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: input_userauth_request: try method publickey
  307. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_key_allowed entering
  308. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 21
  309. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 21
  310. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_keyallowed entering
  311. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_keyallowed: key_from_blob: 0x2b88d599b900
  312. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: temporarily_use_uid: 0/0 (e=0/0)
  313. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: trying public key file /root/.ssh/authorized_keys
  314. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: restore_uid: 0/0
  315. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: temporarily_use_uid: 0/0 (e=0/0)
  316. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: trying public key file /root/.ssh/authorized_keys2
  317. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug1: restore_uid: 0/0
  318. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: Normalising mapped IPv4 in IPv6 address
  319. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_key_allowed: waiting for MONITOR_ANS_KEYALLOWED
  320. Jan 12 10:15:07 LINUXSERV sshd[27319]: Failed publickey for root from 71.199.154.140 port 33060 ssh2
  321. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 22
  322. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_answer_keyallowed: key 0x2b88d599b900 is disallowed
  323. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  324. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 22
  325. Jan 12 10:15:07 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  326. Jan 12 10:15:07 LINUXSERV sshd[27320]: debug2: userauth_pubkey: authenticated 0 pkalg ssh-rsa
  327. Jan 12 10:15:10 LINUXSERV vsftpd: pam_unix(vsftpd:auth): check pass; user unknown
  328. Jan 12 10:15:10 LINUXSERV vsftpd: pam_unix(vsftpd:auth): authentication failure; logname= uid=0 euid=0 tty=ftp ruser=admin rhost=211.103.110.59
  329. Jan 12 10:15:10 LINUXSERV vsftpd: pam_succeed_if(vsftpd:auth): error retrieving information about user admin
  330. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug1: userauth-request for user root service ssh-connection method password
  331. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug1: attempt 2 failures 2
  332. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug2: input_userauth_request: try method password
  333. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_auth_password entering
  334. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 11
  335. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_auth_password: waiting for MONITOR_ANS_AUTHPASSWORD
  336. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 12
  337. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  338. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: monitor_read: checking request 11
  339. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: PAM: sshpam_passwd_conv called with 1 messages
  340. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: PAM: password authentication accepted for root
  341. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_answer_authpassword: sending result 1
  342. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 12
  343. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_receive_expect entering: type 47
  344. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  345. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_auth_password: user authenticated
  346. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_do_pam_account entering
  347. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 47
  348. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_receive_expect entering: type 48
  349. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_receive entering
  350. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: do_pam_account: called
  351. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: PAM: do_pam_account pam_acct_mgmt = 0 (Success)
  352. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_send entering: type 48
  353. Jan 12 10:15:10 LINUXSERV sshd[27319]: Accepted password for root from 71.199.154.140 port 33060 ssh2
  354. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: monitor_child_preauth: root has been authenticated by privileged process
  355. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_get_keystate: Waiting for new keys
  356. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_receive_expect entering: type 25
  357. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_do_pam_account returning 1
  358. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_request_receive entering
  359. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_send_keystate: Sending new keys: 0x2b88d598b0d0 0x2b88d598a640
  360. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_newkeys_to_blob: converting 0x2b88d598b0d0
  361. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_newkeys_to_blob: converting 0x2b88d598a640
  362. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_send_keystate: New keys have been sent
  363. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_send_keystate: Sending compression state
  364. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_request_send entering: type 25
  365. Jan 12 10:15:10 LINUXSERV sshd[27320]: debug3: mm_send_keystate: Finished sending state
  366. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_newkeys_from_blob: 0x2b88d599c280(122)
  367. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: mac_init: found hmac-md5
  368. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_get_keystate: Waiting for second key
  369. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_newkeys_from_blob: 0x2b88d599c280(122)
  370. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: mac_init: found hmac-md5
  371. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_get_keystate: Getting compression state
  372. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_get_keystate: Getting Network I/O buffers
  373. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_share_sync: Share sync
  374. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: mm_share_sync: Share sync end
  375. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: temporarily_use_uid: 0/0 (e=0/0)
  376. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: ssh_gssapi_storecreds: Not a GSSAPI mechanism
  377. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: restore_uid: 0/0
  378. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: PAM: establishing credentials
  379. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug3: PAM: opening session
  380. Jan 12 10:15:10 LINUXSERV sshd[27319]: pam_unix(sshd:session): session opened for user root by (uid=0)
  381. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: set_newkeys: mode 0
  382. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: set_newkeys: mode 1
  383. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: Entering interactive session for SSH2.
  384. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: fd 4 setting O_NONBLOCK
  385. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug2: fd 5 setting O_NONBLOCK
  386. Jan 12 10:15:10 LINUXSERV sshd[27319]: debug1: server_init_dispatch_20
  387. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: server_input_channel_open: ctype session rchan 0 win 2097152 max 32768
  388. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: input_session_request
  389. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: channel 0: new [server-session]
  390. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_new: init
  391. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_new: session 0
  392. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_open: channel 0
  393. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_open: session 0: link with channel 0
  394. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: server_input_channel_open: confirm session
  395. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: server_input_channel_req: channel 0 request env reply 0
  396. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_by_channel: session 0 channel 0
  397. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_input_channel_req: session 0 req env
  398. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug2: Setting env 0: LANG=en_US.UTF-8
  399. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: server_input_channel_req: channel 0 request exec reply 1
  400. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_by_channel: session 0 channel 0
  401. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug1: session_input_channel_req: session 0 req exec
  402. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug2: fd 7 setting O_NONBLOCK
  403. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug3: fd 7 is O_NONBLOCK
  404. Jan 12 10:15:11 LINUXSERV sshd[27319]: debug2: fd 9 setting O_NONBLOCK
  405. Jan 12 10:15:11 LINUXSERV sshd[27321]: debug1: PAM: reinitializing credentials
  406. Jan 12 10:15:11 LINUXSERV sshd[27321]: debug1: permanently_set_uid: 0/0
  407. Jan 12 10:15:11 LINUXSERV sshd[27321]: debug3: Normalising mapped IPv4 in IPv6 address
  408. Jan 12 10:15:11 LINUXSERV sshd[27321]: debug3: channel 0: close_fds r -1 w -1 e -1 c -1
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement