Portal | Manuals | References | Downloads | Info | Programs | JCLs | Mainframe wiki | Quick Ref
IBM Mainframe Computers Forums Index
 
Register
 
IBM Mainframe Computers Forums Index Mainframe: Search IBM Mainframe Forum: FAQ Memberlist Profile Log in to check your private messages Log in
 
SSH - known_hosts file configuration

 
Post new topic   Reply to topic    IBMMAINFRAMES.com Support Forums -> All Other Mainframe Topics
View previous topic :: :: View next topic  
Author Message
vasanthz

Global Moderator


Joined: 28 Aug 2007
Posts: 1532
Location: Chennai

PostPosted: Wed Jul 26, 2017 2:10 am    Post subject: SSH - known_hosts file configuration
Reply with quote

Hi,

We are trying to configure SSH on Unix System Services. We have a file called /.ssh/known_hosts
This file has an entry of public key for remote servers.

Currently the /.ssh/known_hosts file resides in the same mount file as the root. And the root is mounted as RO mode.
Since it is mounted in RO mode, we cannot add anymore entries to the file. We are hesitant to make the root RW mode just for editing /.ssh/known_hosts each time.

Is it possible to make SSH look for known_hosts in some other directory location and not /.ssh/known_hosts?

Regards,
Vasanth.S
Back to top
View user's profile Send private message

Robert Sample

Global Moderator


Joined: 06 Jun 2008
Posts: 8201
Location: Dubuque, Iowa, USA

PostPosted: Wed Jul 26, 2017 2:57 am    Post subject: Reply to: SSH - known_hosts file configuration
Reply with quote

The manual talks about having /etc/ssh/ssh_known_hosts and ~/.ssh/known_hosts files so you should be able to update /etc/ssh/ssh_known_hosts since /etc is generally on its own mount point and definitely RW.
Back to top
View user's profile Send private message
vasanthz

Global Moderator


Joined: 28 Aug 2007
Posts: 1532
Location: Chennai

PostPosted: Wed Jul 26, 2017 5:03 am    Post subject:
Reply with quote

Hi Robert,
You are correct that /etc/ is RW and it has ssh_known_hosts file.

But when I try to connect from Mainframe to a remote server interactively. I get the below error.

Code:
The authenticity of host 'host server' can't be established.
RSA key fingerprint is xx:xx:xx.
Are you sure you want to continue connecting (yes/no)? yes
FOTS2190 Failed to add the host to the list of known hosts (/.ssh/known_hosts).
WELLS@HOST's password:


My colleague suggested that I can try to create a mount point on /.ssh and make it RW. I am planning on copying the contents of /.ssh/ to a temporary directory. Then mount a file to the path and copy the files from temp to the new directory.

Regards,
Vasanth.S
Back to top
View user's profile Send private message
View previous topic :: :: View next topic  
Post new topic   Reply to topic    IBMMAINFRAMES.com Support Forums -> All Other Mainframe Topics All times are GMT + 6 Hours
Page 1 of 1

 

Search our Forum:

Similar Topics
Topic Author Forum Replies Posted
No new posts ISSUE IN copying Sequential file reco... thesumitk JCL & VSAM 2 Wed Dec 13, 2017 3:07 pm
No new posts File Tailoring -- Temporary dataset i... samzee71 CLIST & REXX 3 Fri Dec 01, 2017 3:12 am
No new posts Rexx - File tailoring samzee71 CLIST & REXX 10 Thu Nov 30, 2017 10:47 pm
No new posts Moving a PS file as body of a mail! Vignesh Sid JCL & VSAM 4 Tue Nov 21, 2017 9:23 pm
No new posts unable to set RC = 4 when empty file migusd SYNCSORT 1 Tue Nov 21, 2017 1:21 am

Facebook
Back to Top
 
Job Vacancies | Forum Rules | Bookmarks | Subscriptions | FAQ | Polls | Contact Us