1 |
On 8/19/14 1:00 AM, Robin H. Johnson wrote: |
2 |
> The new SSH keys, in case you still didn't have them: |
3 |
> On Mon, Jun 30, 2014 at 10:26:52PM +0000, Robin H. Johnson wrote: |
4 |
>> 1024 5f:c3:fe:9a:ac:a7:99:f4:d3:c1:93:4c:52:87:74:28 (DSA) |
5 |
>> 256 aa:6a:e4:74:1d:73:d2:5a:9f:45:9f:18:55:81:c9:9a (ECDSA) |
6 |
>> 256 1c:2e:99:7d:c7:f0:bc:3b:a9:fb:d0:3e:2c:2a:79:ba (ED25519) |
7 |
>> 2048 24:3b:2d:3b:47:ca:7e:62:48:97:49:6a:f5:ad:66:88 (RSA) |
8 |
|
9 |
I noticed the ssh host key for cvs.gentoo.org changed just now. |
10 |
|
11 |
IMHO such announcement would greatly benefit from a digital signature. |
12 |
|
13 |
Just in case, this is what ssh printed out for me (the new key matches |
14 |
the announcement): |
15 |
|
16 |
$ cvs up |
17 |
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ |
18 |
@ WARNING: POSSIBLE DNS SPOOFING DETECTED! @ |
19 |
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ |
20 |
The RSA host key for cvs.gentoo.org has changed, |
21 |
and the key for the corresponding IP address 148.251.78.52 |
22 |
is unknown. This could either mean that |
23 |
DNS SPOOFING is happening or the IP address for the host |
24 |
and its host key have changed at the same time. |
25 |
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ |
26 |
@ WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED! @ |
27 |
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ |
28 |
IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY! |
29 |
Someone could be eavesdropping on you right now (man-in-the-middle attack)! |
30 |
It is also possible that a host key has just been changed. |
31 |
The fingerprint for the RSA key sent by the remote host is |
32 |
24:3b:2d:3b:47:ca:7e:62:48:97:49:6a:f5:ad:66:88. |
33 |
Please contact your system administrator. |
34 |
Add correct host key in /home/ph/.ssh/known_hosts to get rid of this |
35 |
message. |
36 |
Offending RSA key in /home/ph/.ssh/known_hosts:15 |
37 |
RSA host key for cvs.gentoo.org has changed and you have requested |
38 |
strict checking. |
39 |
Host key verification failed. |
40 |
cvs [update aborted]: end of file from server (consult above messages if |
41 |
any) |
42 |
|
43 |
Paweł |