Portal | Manuals | References | Downloads | Info | Programs | JCLs | Mainframe wiki | Quick Ref
IBM Mainframe Computers Forums Index
 
Register
 
IBM Mainframe Computers Forums Index Mainframe: Search IBM Mainframe Forum: FAQ Memberlist Profile Log in to check your private messages Log in
 
SSH - known_hosts file configuration

 
Post new topic   Reply to topic    IBMMAINFRAMES.com Support Forums -> All Other Mainframe Topics
View previous topic :: :: View next topic  
Author Message
vasanthz

Global Moderator


Joined: 28 Aug 2007
Posts: 1522
Location: Chennai

PostPosted: Wed Jul 26, 2017 2:10 am    Post subject: SSH - known_hosts file configuration
Reply with quote

Hi,

We are trying to configure SSH on Unix System Services. We have a file called /.ssh/known_hosts
This file has an entry of public key for remote servers.

Currently the /.ssh/known_hosts file resides in the same mount file as the root. And the root is mounted as RO mode.
Since it is mounted in RO mode, we cannot add anymore entries to the file. We are hesitant to make the root RW mode just for editing /.ssh/known_hosts each time.

Is it possible to make SSH look for known_hosts in some other directory location and not /.ssh/known_hosts?

Regards,
Vasanth.S
Back to top
View user's profile Send private message

Robert Sample

Global Moderator


Joined: 06 Jun 2008
Posts: 8165
Location: East Dubuque, Illinois, USA

PostPosted: Wed Jul 26, 2017 2:57 am    Post subject: Reply to: SSH - known_hosts file configuration
Reply with quote

The manual talks about having /etc/ssh/ssh_known_hosts and ~/.ssh/known_hosts files so you should be able to update /etc/ssh/ssh_known_hosts since /etc is generally on its own mount point and definitely RW.
Back to top
View user's profile Send private message
vasanthz

Global Moderator


Joined: 28 Aug 2007
Posts: 1522
Location: Chennai

PostPosted: Wed Jul 26, 2017 5:03 am    Post subject:
Reply with quote

Hi Robert,
You are correct that /etc/ is RW and it has ssh_known_hosts file.

But when I try to connect from Mainframe to a remote server interactively. I get the below error.

Code:
The authenticity of host 'host server' can't be established.
RSA key fingerprint is xx:xx:xx.
Are you sure you want to continue connecting (yes/no)? yes
FOTS2190 Failed to add the host to the list of known hosts (/.ssh/known_hosts).
WELLS@HOST's password:


My colleague suggested that I can try to create a mount point on /.ssh and make it RW. I am planning on copying the contents of /.ssh/ to a temporary directory. Then mount a file to the path and copy the files from temp to the new directory.

Regards,
Vasanth.S
Back to top
View user's profile Send private message
View previous topic :: :: View next topic  
Post new topic   Reply to topic    IBMMAINFRAMES.com Support Forums -> All Other Mainframe Topics All times are GMT + 6 Hours
Page 1 of 1

 

Search our Forum:

Similar Topics
Topic Author Forum Replies Posted
No new posts Execute JCL step based on the content... sprikitik JCL & VSAM 2 Tue Oct 03, 2017 10:03 am
This topic is locked: you cannot edit posts or make replies. PS file data should be passed as symb... d_sarlie JCL & VSAM 15 Tue Oct 03, 2017 5:18 am
No new posts Garbage on output file Hervey Martinez SYNCSORT 4 Wed Sep 27, 2017 12:50 am
No new posts File Aid tool to compare numeric data balaji81_k Compuware & Other Tools 2 Tue Sep 26, 2017 3:35 am
No new posts Compare yesterday's date to the one o... migusd SYNCSORT 11 Fri Sep 22, 2017 11:35 pm

Facebook
Back to Top
 
Job Vacancies | Forum Rules | Bookmarks | Subscriptions | FAQ | Polls | Contact Us