-
Notifications
You must be signed in to change notification settings - Fork 254
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
SSH: sss_ssh_knownhost must succeed if the responder is stopped #7785
Conversation
Any ticket reference? |
None in particular. This is a reaction to the problem @danlavu faced on December 20th. I had seen this problem once or twice before. |
But, IIRC, previously the stance was "if one configures 'sss_ssh_knownhost' then it's also their responsibility to enable 'sssd_ssh' as well. |
Correct, but |
sss_ssh_knownhosts requires that SSSD's 'ssh' service is launched to work properly. But if it is not launched or it is anyhow stopped, the tool MUST NOT fail and let the ssh client continue its job. :fixes: If the ssh responder is not running, `sss_ssh_knownhosts` will not fail (but it will not return the keys).
ACK |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Hi,
thank you for the fix and for enhancing the man page, works for me, ACK.
bye,
Sumit
sss_ssh_knownhosts
requires that SSSD's 'ssh' service is launched to work properly. But if it is not launched or it is anyhow stopped, the tool MUST NOT fail and let the ssh client continue its job.