Koozali.org: home of the SME Server

Putty - Root access denied

yehaah

Putty - Root access denied
« on: January 09, 2006, 08:24:22 AM »
I suddently can't log onto my server as root, using putty?

This is from both local and eksternal networks.

I have no problems logging on as admin via Putty, but if i try as root, I get the following:

Quote
login as: root
root@linux-server's password:
Access denied


I used to be able to log on from home, but not any more.
Only change I've made, is that I hav added a new domain, but I've added them before without problems.

I've tried to reboot, but that didn't help.

It's running SME 6.0.1-01

yehaah

Putty - Root access denied
« Reply #1 on: January 09, 2006, 11:16:36 AM »
I just tried physical access, and there I cant log on as root either.

I noticed that it's a v. 6 and not a 6.0.1-01

Anybody got a clue to what I can do?

yehaah

Putty - Root access denied
« Reply #2 on: January 09, 2006, 11:28:55 AM »
I've been reading http://mirror.contribs.org/smeserver/contribs//bobk/down-loads/sme-manual.pdf and here it says that both "root" and "admin" have the same passwords, and can log in via ssh.

In remote access I've set the following:

Secure shell access     -     intire internet
Allow administrative command line access over secure shell    -    YES
Allow secure shell access using standard passwords      -      YES

Can anybody help me?

Offline Franco

  • *
  • 1,171
  • +0/-0
    • http://contribs.org
Putty - Root access denied
« Reply #3 on: January 09, 2006, 01:14:30 PM »
search for ways to reset your password, in the worse conditions start thinking about reinstalling your system since you migh well gone hacked. Next time either disable SSH login or make it only available to the internal LAN.

yehaah

Putty - Root access denied
« Reply #4 on: January 09, 2006, 02:45:20 PM »
Quote from: "stuntshell"
search for ways to reset your password, in the worse conditions start thinking about reinstalling your system since you migh well gone hacked.

Isn't SME more secure than that?

Ill se if I can set a new password in the start screen.

Quote
Next time either disable SSH login or make it only available to the internal LAN.

Then I can't logon from home, to do changes.

Offline byte

  • *
  • 2,183
  • +2/-0
Putty - Root access denied
« Reply #5 on: January 09, 2006, 03:01:23 PM »
Yes SME is secure as long as updates are maintanied, and that because you have enabled SSH to Internet you have strong password.

If your password has been changed you would not be able to get in, you would need to follow this...

http://no.longer.valid/phpwiki/index.php/TroubleshootingFAQ#lostPassword
--[byte]--

Have you filled in a Bug Report over @ http://bugs.contribs.org ? Please don't wait to be told this way you help us to help you/others - Thanks!

Offline Franco

  • *
  • 1,171
  • +0/-0
    • http://contribs.org
Putty - Root access denied
« Reply #6 on: January 09, 2006, 03:06:51 PM »
It's like buying one of those armored cars with special everything, bullet proof, etc. and leave it on the parking lot with the windows down and the keys in.
 :oops:
So security is not only about the product itself.
To access it remotelly you can use public/private keys, VPN and also change the SSH port for the extra security.

Now, I'm not saying that your system has been compromised, only a full audit would tell you so. You made things easier by allowing full SSH access, an attacker already know the login (root) and if your password was not strong enough...

yehaah

Putty - Root access denied
« Reply #7 on: January 09, 2006, 03:35:55 PM »
OK, I'reinstall the machine to be sure.

I've set SSH to local networks for now, and I'll look into how to change ports when the new one is up and running.

Is local ssh secure enough for the time beeing, or is there more that I should be aware of?

Offline byte

  • *
  • 2,183
  • +2/-0
Putty - Root access denied
« Reply #8 on: January 09, 2006, 03:52:04 PM »
Local access is fine, I have been running that for number of years without any problems
--[byte]--

Have you filled in a Bug Report over @ http://bugs.contribs.org ? Please don't wait to be told this way you help us to help you/others - Thanks!

Offline mike_mattos

  • *
  • 313
  • +0/-0
Putty - Root access denied
« Reply #9 on: January 11, 2006, 08:56:50 PM »
You could use something like Radmin from outside your local network, to access a workstation.

A hacker would then have to figure out the open radmin server port, then discover/load his own  radmin, then crack your  radmin password, then crack your windows security to access the local machine, and then from there onto the SME server.

probably secure enough except the people who already have keyboard access!
...