Gentoo Archives: gentoo-dev

From: "Paweł Hajdan
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Followup notes: {cvs,git,git.overlays}.gentoo.org migration; awol: some overlays commits, gitweb
Date: Tue, 19 Aug 2014 16:11:20
Message-Id: 53F3770E.7080600@gentoo.org
In Reply to: [gentoo-dev] Followup notes: {cvs,git,git.overlays}.gentoo.org migration; awol: some overlays commits, gitweb by "Robin H. Johnson"
1 On 8/19/14 1:00 AM, Robin H. Johnson wrote:
2 > The new SSH keys, in case you still didn't have them:
3 > On Mon, Jun 30, 2014 at 10:26:52PM +0000, Robin H. Johnson wrote:
4 >> 1024 5f:c3:fe:9a:ac:a7:99:f4:d3:c1:93:4c:52:87:74:28 (DSA)
5 >> 256 aa:6a:e4:74:1d:73:d2:5a:9f:45:9f:18:55:81:c9:9a (ECDSA)
6 >> 256 1c:2e:99:7d:c7:f0:bc:3b:a9:fb:d0:3e:2c:2a:79:ba (ED25519)
7 >> 2048 24:3b:2d:3b:47:ca:7e:62:48:97:49:6a:f5:ad:66:88 (RSA)
8
9 I noticed the ssh host key for cvs.gentoo.org changed just now.
10
11 IMHO such announcement would greatly benefit from a digital signature.
12
13 Just in case, this is what ssh printed out for me (the new key matches
14 the announcement):
15
16 $ cvs up
17 @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
18 @ WARNING: POSSIBLE DNS SPOOFING DETECTED! @
19 @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
20 The RSA host key for cvs.gentoo.org has changed,
21 and the key for the corresponding IP address 148.251.78.52
22 is unknown. This could either mean that
23 DNS SPOOFING is happening or the IP address for the host
24 and its host key have changed at the same time.
25 @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
26 @ WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED! @
27 @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
28 IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
29 Someone could be eavesdropping on you right now (man-in-the-middle attack)!
30 It is also possible that a host key has just been changed.
31 The fingerprint for the RSA key sent by the remote host is
32 24:3b:2d:3b:47:ca:7e:62:48:97:49:6a:f5:ad:66:88.
33 Please contact your system administrator.
34 Add correct host key in /home/ph/.ssh/known_hosts to get rid of this
35 message.
36 Offending RSA key in /home/ph/.ssh/known_hosts:15
37 RSA host key for cvs.gentoo.org has changed and you have requested
38 strict checking.
39 Host key verification failed.
40 cvs [update aborted]: end of file from server (consult above messages if
41 any)
42
43 Paweł

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies