On Mon, Mar 27, 2006 at 04:36:55PM -0500, jared r r spiegel wrote:
> >
> > When I ssh to the soekris host or I ssh from my soekris box to another one,
> > I get disconnected with the following message: "corrupted mac on input". It
> > happens on a inregular basis at random intervals.
> >
> > a) Is anyone else experiencing the problem?
> > b) How can I solve the problem?
>
> yeah, it's not just you. i have a 4801 with 1411 and am
> seeing the same thing. not sure if it is related to 1411,
> i'm testing with blowfish-cbc for my ssh connection at the moment.
seems to be just ciphers that the hifn handle who have the trouble.
received a suggestion that it might be whenever the hifn is being
used by >1 things at once; tried a test involving setting
'-o MACs=blahblah' or '-c blahblah' on the commandline. verified
with -v that the stuff actually was doing what i told it to.
changing the MACs= didn't affect the results.
hmac-{md5,sha1}{,-96} and hmac-ripemd160 all give corrupt MAC on input
if i am using a cipher of either aes{128,192,256}-cbc or 3des-cbc.
the arcfour jobs, blowfish, and the aes*-ctr ones (who don't use hifn)
never exhibit the issue regardless of using hmac-{md5,sha1}.
so for now, yeah, the '-c blowfish-cbc', is keeping this problem at
a lower priority than all the other problems i'm working on <BG>
--
jared
[ openbsd 3.9-current GENERIC ( mar 15 ) // i386 ]