Re: deprecated options in openssh

2021-09-13 Thread David Wright
On Sat 11 Sep 2021 at 16:02:30 (-0400), Greg Wooledge wrote: > On Sat, Sep 11, 2021 at 02:44:13PM -0500, David Wright wrote: > > As I understood the OP's first reply (to yourself), there are > > remote logs available, not logged locally but sent by email: > > > > "/usr/sbin/logwatch --detail

Re: deprecated options in openssh

2021-09-11 Thread Greg Wooledge
On Sat, Sep 11, 2021 at 02:44:13PM -0500, David Wright wrote: > As I understood the OP's first reply (to yourself), there are > remote logs available, not logged locally but sent by email: > > "/usr/sbin/logwatch --detail low --mailto x...@domain.com" I don't know anything about logwatch. But

Re: deprecated options in openssh

2021-09-11 Thread David Wright
On Fri 10 Sep 2021 at 17:55:59 (-0400), rhkra...@gmail.com wrote: > On Friday, September 10, 2021 02:52:42 PM Dan Ritter wrote: > > David Wright wrote: > > > If you make a telephone call on speaker, and you have a tape recorder > > > in the room recording the conversation, the speaker at the other

Re: deprecated options in openssh

2021-09-11 Thread David Wright
On Fri 10 Sep 2021 at 13:17:39 (-0400), Greg Wooledge wrote: > On Fri, Sep 10, 2021 at 11:51:07AM -0500, David Wright wrote: > > On Fri 10 Sep 2021 at 16:05:26 (+0100), Adam Weremczuk wrote: > > > > > Would it be possible for another host to log to syslog without a prior > > > explicit manual

Re: deprecated options in openssh

2021-09-10 Thread rhkramer
On Friday, September 10, 2021 02:52:42 PM Dan Ritter wrote: > David Wright wrote: > > If you make a telephone call on speaker, and you have a tape recorder > > in the room recording the conversation, the speaker at the other end > > of the call doesn't need to have permission for their words to be

Re: deprecated options in openssh

2021-09-10 Thread Dan Ritter
David Wright wrote: > On Fri 10 Sep 2021 at 16:05:26 (+0100), Adam Weremczuk wrote: > > > Would it be possible for another host to log to syslog without a prior > > explicit manual configuration allowing that? > > If you make a telephone call on speaker, and you have a tape recorder > in the

Re: deprecated options in openssh

2021-09-10 Thread Greg Wooledge
On Fri, Sep 10, 2021 at 06:10:59PM +0100, Adam Weremczuk wrote: > On 10/09/2021 17:46, Greg Wooledge wrote: > > > Depends on which syslog daemon implementation you're using, I think. > > My environment: Linux deb10 5.4.44-1-pve #1 SMP PVE 5.4.44-1 (Fri, 12 Jun > 2020 08:18:46 +0200) x86_64

Re: deprecated options in openssh

2021-09-10 Thread Adam Weremczuk
On 10/09/2021 17:46, Greg Wooledge wrote: Depends on which syslog daemon implementation you're using, I think. My environment: Linux deb10 5.4.44-1-pve #1 SMP PVE 5.4.44-1 (Fri, 12 Jun 2020 08:18:46 +0200) x86_64 GNU/Linux Pretty minimalistic set up. Rsyslog 8.1901.0-1 out of the box, no

Re: deprecated options in openssh

2021-09-10 Thread Adam Weremczuk
On 10/09/2021 17:51, David Wright wrote: When you commence your call, both you and the person at the other end probably exchange some pleasantries, which confirm that you're both who you say you are. These all get recorded too. Ssh is no different. Are you saying these entries could belong to

Re: deprecated options in openssh

2021-09-10 Thread Greg Wooledge
On Fri, Sep 10, 2021 at 01:17:39PM -0400, Greg Wooledge wrote: > It's not clear which syslogd the OP is using. It's not even clear to me > what *operating system* they're using, since their systemctl status output > has at least one line that mine (bullseye) does not have. I just checked on a

Re: deprecated options in openssh

2021-09-10 Thread Greg Wooledge
On Fri, Sep 10, 2021 at 11:51:07AM -0500, David Wright wrote: > On Fri 10 Sep 2021 at 16:05:26 (+0100), Adam Weremczuk wrote: > > > Would it be possible for another host to log to syslog without a prior > > explicit manual configuration allowing that? > > If you make a telephone call on speaker,

Re: deprecated options in openssh

2021-09-10 Thread David Wright
On Fri 10 Sep 2021 at 16:05:26 (+0100), Adam Weremczuk wrote: > Would it be possible for another host to log to syslog without a prior > explicit manual configuration allowing that? If you make a telephone call on speaker, and you have a tape recorder in the room recording the conversation, the

Re: deprecated options in openssh

2021-09-10 Thread Greg Wooledge
On Fri, Sep 10, 2021 at 04:05:26PM +0100, Adam Weremczuk wrote: > Would it be possible for another host to log to syslog without a prior > explicit manual configuration allowing that? Depends on which syslog daemon implementation you're using, I think.

Re: deprecated options in openssh

2021-09-10 Thread Adam Weremczuk
On 10/09/2021 13:11, Greg Wooledge wrote: Not matching what's in the file: awk 'NR==25' /etc/ssh/sshd_config awk 'NR==28' /etc/ssh/sshd_config awk 'NR==29' /etc/ssh/sshd_config # Lifetime and size of ephemeral version 1 server key OK, so "it" is in fact "The warnings in syslog contain line

Re: deprecated options in openssh

2021-09-10 Thread David Wright
On Fri 10 Sep 2021 at 08:11:02 (-0400), Greg Wooledge wrote: > On Fri, Sep 10, 2021 at 10:33:47AM +0100, Adam Weremczuk wrote: > > Weeks later it happened again and I'm not any less puzzled: > > All right, now we're getting somewhere. > > Is it possible that these lines are being remotely

Re: deprecated options in openssh

2021-09-10 Thread Greg Wooledge
On Fri, Sep 10, 2021 at 10:33:47AM +0100, Adam Weremczuk wrote: > Weeks later it happened again and I'm not any less puzzled: What's "it"? > /var/log/syslog > > Aug 28 10:12:30 deb10 sshd[145]: /etc/ssh/sshd_config line 25: Deprecated > option UsePrivilegeSeparation Fine, just comment out the

Re: deprecated options in openssh

2021-09-10 Thread Adam Weremczuk
Hi all, Weeks later it happened again and I'm not any less puzzled: /var/log/syslog Aug 28 10:12:30 deb10 sshd[145]: /etc/ssh/sshd_config line 25: Deprecated option UsePrivilegeSeparation Aug 28 10:12:30 deb10 sshd[145]: /etc/ssh/sshd_config line 28: Deprecated option KeyRegenerationInterval

Re: deprecated options in openssh

2021-08-17 Thread Anssi Saari
Adam Weremczuk writes: > Installation and configuration was straightforward: > > sudo apt install logwatch > > /etc/cron.daily/00logwatch > #execute > /usr/sbin/logwatch --detail low --mailto x...@domain.com Maybe run logwatch manually and with different options? Like with --detail high or

Re: deprecated options in openssh

2021-08-16 Thread David Wright
On Mon 16 Aug 2021 at 16:49:16 (+0100), Adam Weremczuk wrote: > Installation and configuration was straightforward: > > sudo apt install logwatch > > /etc/cron.daily/00logwatch > #execute > /usr/sbin/logwatch --detail low --mailto x...@domain.com > > The master config file

Re: deprecated options in openssh

2021-08-16 Thread Adam Weremczuk
Installation and configuration was straightforward: sudo apt install logwatch /etc/cron.daily/00logwatch #execute /usr/sbin/logwatch --detail low --mailto x...@domain.com The master config file /usr/share/logwatch/default.conf/logwatch.conf left with defaults. Only one report per day

Re: deprecated options in openssh

2021-08-16 Thread Greg Wooledge
On Mon, Aug 16, 2021 at 03:06:30PM +0100, Adam Weremczuk wrote: > I run openssh 7.9p1-10+deb10u2 on Debian 10.10. > > Logwatch, which runs daily, occasionally (maybe 2-3 times per month) reports > the following: Sometimes you get warnings, and sometimes you don't? That's a red flag right off

deprecated options in openssh

2021-08-16 Thread Adam Weremczuk
Hi all, I run openssh 7.9p1-10+deb10u2 on Debian 10.10. Logwatch, which runs daily, occasionally (maybe 2-3 times per month) reports the following: - SSHD Begin  Deprecated options in SSH config:     KeyRegenerationInterval - line 28