I am getting "FOTS1124 no hostkey alg" when I try to ssh from z/OS to Linux. I am at a z/OS UNIX prompt. I use PUTTY on Windows to ssh into z/OS UNIX. I am on z/OS 1.12. I have looked on the web & tried everything that I can find. No joy. Anybody know what I'm doing wrong. I know that it used to work, pre FC33.
I am running: ssh -V OpenSSH_5.0p1, OpenSSL 0.9.8k 25 Mar 2009 ssh -vvv tsh009@$LINUX OpenSSH_5.0p1, OpenSSL 0.9.8k 25 Mar 2009 debug1: Reading configuration data /etc/ssh/ssh_config debug3: cipher ok: aes128-cbc [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: cipher ok: 3des-cbc [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: cipher ok: blowfish-cbc [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: cipher ok: aes192-cbc [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: cipher ok: aes256-cbc [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: cipher ok: aes256-ctr [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug3: ciphers ok: [aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr] debug2: mac_setup: found hmac-sha1 debug3: mac ok: hmac-sha1 [hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96] debug2: mac_setup: found hmac-sha1-96 debug3: mac ok: hmac-sha1-96 [hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96] debug2: mac_setup: found hmac-md5 debug3: mac ok: hmac-md5 [hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96] debug2: mac_setup: found hmac-md5-96 debug3: mac ok: hmac-md5-96 [hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96] debug3: macs ok: [hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96] debug1: Reading configuration data /etc/ssh/zos_ssh_config debug3: Seeding PRNG from /usr/lib/ssh/ssh-rand-helper debug1: zsshSmfSetConnSmfStatus: changing SMF status from 0 to 83 debug1: Rhosts Authentication disabled, originating port will not be trusted. debug2: ssh_connect: needpriv 0 debug1: Connecting to 10.43.131.148 [10.43.131.148] port 22. debug1: Connection established. debug3: zsshGetpw: passwd name=TSH009, uid=1009, gid=1000, dir=/, shell=/bin/sh debug1: identity file /.ssh/id_rsa type -1 debug1: identity file /.ssh/id_dsa type -1 debug1: Remote protocol version 2.0, remote software version OpenSSH_8.4 debug1: match: OpenSSH_8.4 pat OpenSSH* debug1: Enabling compatibility mode for protocol 2.0 debug1: Local version string SSH-2.0-OpenSSH_5.0 debug2: fd 4 setting O_NONBLOCK debug3: RNG is ready, skipping seeding debug1: SSH2_MSG_KEXINIT sent debug1: SSH2_MSG_KEXINIT received debug2: kex_parse_kexinit: diffie-hellman-group-exchange-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1 debug2: kex_parse_kexinit: ssh-rsa,ssh-dss debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,blowfish-cbc,aes192-cbc,aes256-cbc,aes256-ctr debug2: kex_parse_kexinit: hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96 debug2: kex_parse_kexinit: hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96 debug2: kex_parse_kexinit: none,z...@openssh.com,zlib debug2: kex_parse_kexinit: none,z...@openssh.com,zlib debug2: kex_parse_kexinit: debug2: kex_parse_kexinit: debug2: kex_parse_kexinit: first_kex_follows 0 debug2: kex_parse_kexinit: reserved 0 debug2: kex_parse_kexinit: curve25519-sha256,curve25519-sha...@libssh.org ,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512 debug2: kex_parse_kexinit: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519 debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,aes128-ctr,aes192-ctr,aes256-ctr debug2: kex_parse_kexinit: aes128-cbc,3des-cbc,aes128-ctr,aes192-ctr,aes256-ctr debug2: kex_parse_kexinit: hmac-sha1,hmac-sha1-96 debug2: kex_parse_kexinit: hmac-sha1,hmac-sha1-96 debug2: kex_parse_kexinit: none,z...@openssh.com debug2: kex_parse_kexinit: none,z...@openssh.com debug2: kex_parse_kexinit: debug2: kex_parse_kexinit: debug2: kex_parse_kexinit: first_kex_follows 0 debug2: kex_parse_kexinit: reserved 0 debug2: mac_setup: found hmac-sha1 debug1: kex: server->client aes128-cbc hmac-sha1 none debug2: mac_setup: found hmac-sha1 debug1: kex: client->server aes128-cbc hmac-sha1 none debug3: __catgets: NLS setup complete (1), using message catalog openssh.cat FOTS1124 no hostkey alg The Linux system is Fedora 33. I am running OpenSSH_8.4p1, OpenSSL 1.1.1g FIPS 21 Apr 2020 ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN