Hi,
On Sat, Jan 27, 2024 at 09:55:16AM +, Michael Kjörling wrote:
> On 27 Jan 2024 08:12 +, from a...@strugglers.net (Andy Smith):
> > This only happens when I log in as root using a public key, i.e.
> >
> > ssh -i /path/to/pubkey r...@t.example.com
>
> According to
On 27 Jan 2024 08:12 +, from a...@strugglers.net (Andy Smith):
> 2024-01-27T07:59:42.003881+00:00 t.example.com sshd[12319]: Postponed
> publickey for root from 2001:db8:1f1:f0c2::2 port 37032 ssh2 [preauth]
> 2024-01-27T07:59:42.01+00:00 t.example.com sshd[12319]: Accepted
> publickey
Hi,
I typically have logcheck send me anomalous logs. In the last week,
all Debian 10 machines (I know, I know, upgrade needed) started
logging this whenever I logged in from a particular other host by
SSH:
2024-01-27T07:59:42.003881+00:00 t.example.com sshd[12319]: Postponed publickey
for root
3 matches
Mail list logo