[Eisfair] ssh-Verbindung wird sehr langsam aufgebaut
Stefan Puschek
stefan.puschek at t-online.de
So Jul 20 16:06:31 CEST 2025
Hallo Holger,
> > Warum dauert eine Anmeldung per ssh seit einiger Zeit so lange?
>
> versuch es mal damit
>
> -v Verbose mode. Causes ssh to print debugging messages
> about its progress. This is helpful in debugging
> connection, authentication, and configuration problems.
> Multiple -v options increase the verbosity. The maximum
> is 3.
>
stefan at cartman:~$ time ssh -vvv -4 -l root -i ~/.ssh/barbrady.priv
barbrady "uname -a" OpenSSH_9.2p1 Debian-2+deb12u6, OpenSSL 3.0.16 11
Feb 2025 debug1: Reading configuration data /etc/ssh/ssh_config
debug1: /etc/ssh/ssh_config line 19: include
/etc/ssh/ssh_config.d/*.conf matched no files debug3: expanded
UserKnownHostsFile '~/.ssh/known_hosts' ->
'/home/stefan/.ssh/known_hosts' debug3: expanded UserKnownHostsFile
'~/.ssh/known_hosts2' -> '/home/stefan/.ssh/known_hosts2' debug2:
resolving "barbrady" port 22 debug3: resolve_host: lookup barbrady:22
debug3: ssh_connect_direct: entering debug1: Connecting to barbrady
[192.168.6.7] port 22. debug3: set_sock_tos: set socket 3 IP_TOS 0x10
debug1: Connection established.
debug1: identity file /home/stefan/.ssh/barbrady.priv type 3
debug1: identity file /home/stefan/.ssh/barbrady.priv-cert type -1
debug1: Local version string SSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u6
debug1: Remote protocol version 2.0, remote software version
OpenSSH_10.0 debug1: compat_banner: match: OpenSSH_10.0 pat OpenSSH*
compat 0x04000000 debug2: fd 3 setting O_NONBLOCK
debug1: Authenticating to barbrady:22 as 'root'
debug3: record_hostkey: found key type ED25519 in file
/home/stefan/.ssh/known_hosts:1 debug3: record_hostkey: found key type
RSA in file /home/stefan/.ssh/known_hosts:52 debug3:
load_hostkeys_file: loaded 2 keys from barbrady debug1: load_hostkeys:
fopen /home/stefan/.ssh/known_hosts2: No such file or directory debug1:
load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or
directory debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No
such file or directory debug3: order_hostkeyalgs: have matching
best-preference key type ssh-ed25519-cert-v01 at openssh.com, using
HostkeyAlgorithms verbatim debug3: send packet: type 20 debug1:
SSH2_MSG_KEXINIT sent debug3: receive packet: type 20 debug1:
SSH2_MSG_KEXINIT received debug2: local client KEXINIT proposal
debug2: KEX algorithms:
sntrup761x25519-sha512,sntrup761x25519-sha512 at openssh.com,curve25519-sha256,curve25519-sha256 at libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,diffie-hellman-group14-sha256,ext-info-c,kex-strict-c-v00 at openssh.com
debug2: host key algorithms:
ssh-ed25519-cert-v01 at openssh.com,ecdsa-sha2-nistp256-cert-v01 at openssh.com,ecdsa-sha2-nistp384-cert-v01 at openssh.com,ecdsa-sha2-nistp521-cert-v01 at openssh.com,sk-ssh-ed25519-cert-v01 at openssh.com,sk-ecdsa-sha2-nistp256-cert-v01 at openssh.com,rsa-sha2-512-cert-v01 at openssh.com,rsa-sha2-256-cert-v01 at openssh.com,ssh-ed25519,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ssh-ed25519 at openssh.com,sk-ecdsa-sha2-nistp256 at openssh.com,rsa-sha2-512,rsa-sha2-256
debug2: ciphers ctos:
chacha20-poly1305 at openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm at openssh.com,aes256-gcm at openssh.com
debug2: ciphers stoc:
chacha20-poly1305 at openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm at openssh.com,aes256-gcm at openssh.com
debug2: MACs ctos:
umac-64-etm at openssh.com,umac-128-etm at openssh.com,hmac-sha2-256-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha1-etm at openssh.com,umac-64 at openssh.com,umac-128 at openssh.com,hmac-sha2-256,hmac-sha2-512,hmac-sha1
debug2: MACs stoc:
umac-64-etm at openssh.com,umac-128-etm at openssh.com,hmac-sha2-256-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha1-etm at openssh.com,umac-64 at openssh.com,umac-128 at openssh.com,hmac-sha2-256,hmac-sha2-512,hmac-sha1
debug2: compression ctos: none,zlib at openssh.com,zlib debug2:
compression stoc: none,zlib at openssh.com,zlib debug2: languages ctos:
debug2: languages stoc: debug2: first_kex_follows 0 debug2: reserved 0
debug2: peer server KEXINIT proposal debug2: KEX algorithms:
ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-s,kex-strict-s-v00 at openssh.com
debug2: host key algorithms: ssh-ed25519,rsa-sha2-512,rsa-sha2-256
debug2: ciphers ctos:
aes256-gcm at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr
debug2: ciphers stoc:
aes256-gcm at openssh.com,aes256-ctr,aes128-gcm at openssh.com,aes128-ctr
debug2: MACs ctos:
hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512
debug2: MACs stoc:
hmac-sha2-256-etm at openssh.com,hmac-sha1-etm at openssh.com,hmac-sha2-512-etm at openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha2-512
debug2: compression ctos: none debug2: compression stoc: none debug2:
languages ctos: debug2: languages stoc: debug2: first_kex_follows 0
debug2: reserved 0 debug3: kex_choose_conf: will use strict KEX
ordering debug1: kex: algorithm: ecdh-sha2-nistp256 debug1: kex: host
key algorithm: ssh-ed25519 debug1: kex: server->client cipher:
aes128-ctr MAC: hmac-sha2-256-etm at openssh.com compression: none debug1:
kex: client->server cipher: aes128-ctr MAC:
hmac-sha2-256-etm at openssh.com compression: none debug3: send packet:
type 30 debug1: expecting SSH2_MSG_KEX_ECDH_REPLY debug3: receive
packet: type 31 debug1: SSH2_MSG_KEX_ECDH_REPLY received debug1: Server
host key: ssh-ed25519
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 debug3:
record_hostkey: found key type ED25519 in file
/home/stefan/.ssh/known_hosts:1 debug3: record_hostkey: found key type
RSA in file /home/stefan/.ssh/known_hosts:52 debug3:
load_hostkeys_file: loaded 2 keys from barbrady debug1: load_hostkeys:
fopen /home/stefan/.ssh/known_hosts2: No such file or directory debug1:
load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or
directory debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No
such file or directory debug1: Host 'barbrady' is known and matches the
ED25519 host key. debug1: Found key in /home/stefan/.ssh/known_hosts:1
debug3: send packet: type 21 debug1: ssh_packet_send2_wrapped:
resetting send seqnr 3 debug2: ssh_set_newkeys: mode 1 debug1: rekey
out after 4294967296 blocks debug1: SSH2_MSG_NEWKEYS sent debug1:
expecting SSH2_MSG_NEWKEYS debug3: receive packet: type 21 debug1:
ssh_packet_read_poll2: resetting read seqnr 3 debug1: SSH2_MSG_NEWKEYS
received debug2: ssh_set_newkeys: mode 0
debug1: rekey in after 4294967296 blocks
debug3: ssh_get_authentication_socket_path: path
'/run/user/1000/keyring/ssh' debug1: get_agent_identities: bound agent
to hostkey debug1: get_agent_identities: ssh_fetch_identitylist: agent
contains no identities debug1: Will attempt key:
/home/stefan/.ssh/barbrady.priv ED25519
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 explicit debug2:
pubkey_prepare: done debug3: send packet: type 5 debug3: receive
packet: type 7 debug1: SSH2_MSG_EXT_INFO received
debug1: kex_input_ext_info:
server-sig-algs=<ecdsa-sha2-nistp256,sk-ecdsa-sha2-nistp256 at openssh.com,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,ssh-ed25519,sk-ssh-ed25519 at openssh.com,rsa-sha2-256,rsa-sha2-512>
debug1: kex_input_ext_info: publickey-hostbound at openssh.com=<0> debug1:
kex_input_ext_info: ping at openssh.com (unrecognised) debug3: receive
packet: type 6 debug2: service_accept: ssh-userauth
debug1: SSH2_MSG_SERVICE_ACCEPT received
debug3: send packet: type 50
debug3: receive packet: type 51
debug1: Authentications that can continue: publickey,password
debug3: start over, passed a different list publickey,password
debug3: preferred publickey,keyboard-interactive,password
debug3: authmethod_lookup publickey
debug3: remaining preferred: keyboard-interactive,password
debug3: authmethod_is_enabled publickey
debug1: Next authentication method: publickey
debug1: Offering public key: /home/stefan/.ssh/barbrady.priv ED25519
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 explicit debug3:
send packet: type 50 debug2: we sent a publickey packet, wait for reply
debug3: receive packet: type 60
debug1: Server accepts key: /home/stefan/.ssh/barbrady.priv ED25519
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 explicit debug3:
sign_and_send_pubkey: using publickey-hostbound-v00 at openssh.com with
ED25519 SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 debug3:
sign_and_send_pubkey: signing using ssh-ed25519
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 debug3: send packet:
type 50 debug3: receive packet: type 52 Authenticated to barbrady
([192.168.6.7]:22) using "publickey". debug1: channel 0: new session
[client-session] (inactive timeout: 0) debug3: ssh_session2_open:
channel_new: 0 debug2: channel 0: send open debug3: send packet: type 90
debug1: Requesting no-more-sessions at openssh.com
debug3: send packet: type 80
debug1: Entering interactive session.
debug1: pledge: filesystem
debug3: client_repledge: enter
debug3: receive packet: type 80
debug1: client_input_global_request: rtype hostkeys-00 at openssh.com
want_reply 0 debug3: client_input_hostkeys: received ED25519 key
SHA256:e9yAfJzK+MP9XM0Q7FHYdE6POSEOXep3bXtA+Xtgzk0 debug3:
client_input_hostkeys: received RSA key
SHA256:Hg5EVzCJH8ffqV4VPI46FkFaeLUpJ0pqgjagACylysY debug1:
client_input_hostkeys: searching /home/stefan/.ssh/known_hosts for
barbrady / (none) debug3: hostkeys_foreach: reading file
"/home/stefan/.ssh/known_hosts" debug3: hostkeys_find: found
ssh-ed25519 key at /home/stefan/.ssh/known_hosts:1 debug3:
hostkeys_find: found ssh-rsa key at /home/stefan/.ssh/known_hosts:52
debug1: client_input_hostkeys: searching /home/stefan/.ssh/known_hosts2
for barbrady / (none) debug1: client_input_hostkeys: hostkeys file
/home/stefan/.ssh/known_hosts2 does not exist debug3:
client_input_hostkeys: 2 server keys: 0 new, 2 retained, 0 incomplete
match. 0 to remove debug1: client_input_hostkeys: no new or deprecated
keys from server debug3: client_repledge: enter debug3: receive packet:
type 4 debug1: Remote: /root/.ssh/authorized_keys:1: key options:
agent-forwarding port-forwarding pty user-rc x11-forwarding debug3:
receive packet: type 4 debug1: Remote: /root/.ssh/authorized_keys:1:
key options: agent-forwarding port-forwarding pty user-rc
x11-forwarding debug3: receive packet: type 91 debug2:
channel_input_open_confirmation: channel 0: callback start debug2: fd 3
setting TCP_NODELAY debug3: set_sock_tos: set socket 3 IP_TOS 0x08
debug2: client_session2_setup: id 0 debug1: Sending command: uname -a
debug2: channel 0: request exec confirm 1 debug3: send packet: type 98
debug3: client_repledge: enter debug1: pledge: fork
debug2: channel_input_open_confirmation: channel 0: callback done
debug2: channel 0: open confirm rwindow 0 rmax 32768
debug2: channel 0: rcvd adjust 2097152
debug3: receive packet: type 99
debug2: channel_input_status_confirm: type 99 id 0
debug2: exec request accepted on channel 0
Linux barbrady 6.6.96-eisfair-1-PAE #1 SMP PREEMPT_DYNAMIC Sun Jul 6
18:04:21 CEST 2025 i686 i686 i386 GNU/Linux debug3: receive packet:
type 96 debug2: channel 0: rcvd eof
debug2: channel 0: output open -> drain
debug2: channel 0: obuf empty
debug2: chan_shutdown_write: channel 0: (i0 o1 sock -1 wfd 5 efd 6
[write]) debug2: channel 0: output drain -> closed
debug3: receive packet: type 98
debug1: client_input_channel_req: channel 0 rtype exit-status reply 0
debug3: receive packet: type 98
debug1: client_input_channel_req: channel 0 rtype eow at openssh.com reply
0 debug2: channel 0: rcvd eow
debug2: chan_shutdown_read: channel 0: (i0 o3 sock -1 wfd 4 efd 6
[write]) debug2: channel 0: input open -> closed
debug3: receive packet: type 97
debug2: channel 0: rcvd close
debug3: channel 0: will not send data after close
debug2: channel 0: almost dead
debug2: channel 0: gc: notify user
debug2: channel 0: gc: user detached
debug2: channel 0: send close
debug3: send packet: type 97
debug2: channel 0: is dead
debug2: channel 0: garbage collecting
debug1: channel 0: free: client-session, nchannels 1
debug3: channel 0: status: The following connections are open:
#0 client-session (t4 [session] r0 i3/0 o3/0 e[write]/0 fd -1/-1/6
sock -1 cc -1 io 0x00/0x00)
debug3: send packet: type 1
Transferred: sent 2364, received 2640 bytes, in 2.5 seconds
Bytes per second: sent 957.4, received 1069.2
debug1: Exit status 0
real 0m3,919s
user 0m0,012s
sys 0m0,004s
stefan at cartman:~$
Hilft Dir das weiter? Ich finde darin keinen Hinweis, wo warum gebremst
wird.
>
> ssh -vvv
>
>
> Holger
Groetjes
Stefan
Mehr Informationen über die Mailingliste Eisfair