PDA

View Full Version : unwanted keys showing up in /root/.ssh/known_hosts



zapcojake
January 29th, 2009, 12:41 PM
I am using Sabayon 4. As installed /root/.ssh/known_hosts has keys for 84.18.151.170, and www.sabayonlinux.org,72.55.147.227. This has happened on both machines I am using Sabayon. Why would these keys be there? I did not put them there and Equo works with them commented out. Is there some other service that would require these keys?

Kinetic Being
January 29th, 2009, 09:54 PM
I can't think of a reason why there would be known_keys in the root folder if you didn't put them there, unless someone else did...

I don't know much about ssh, besides shutting it down on my box, but it seems like those addresses in there could possibly login as root via ssh? Thats bad...

Do you use ssh, or did they just show up?

Make sure no one can login as root, in /etc/ssh/ssh_config (or something like that) make sure there is AllowRootLogin (or something like that) set to no.

zapcojake
January 30th, 2009, 01:02 AM
I use ssh to administer my machines remotely. I have an Ubuntu box and /root/.ssh/known_hosts has only the keys that it is supposed to. This is also not default behavior in Gentoo. I am going to post on the Sabayon site and see if they can explain it.