Le 19/11/2014 22:19, Richard W.M. Jones a écrit :
On Wed, Nov 19, 2014 at 10:05:53PM +0100, Nicolas Ecarnot wrote:
> Nov 19 21:54:52 serv-p2v-adm1 sshd[2727]: pam_unix(sshd:session):
> session opened for user root by (uid=0)
> Nov 19 21:54:53 serv-p2v-adm1 sshd[2725]: channel 2: open failed:
> connect failed: Connection refused
> Nov 19 21:54:53 serv-p2v-adm1 sshd[2727]: Received disconnect from
> 192.168.49.5: 11: disconnected by user
> Nov 19 21:54:53 serv-p2v-adm1 sshd[2725]: Received disconnect from
> 192.168.49.5: 11: disconnected by user
[...]
>
> Indeed, I see "Connection refused".
> Let's investigate on this.
>
> On the conversion server (serv-p2v-adm1), before running all this, I
> did a "iptables -F" (and a restart of NFS - not knowing if it was
> needed), so I have no rule in iptables now.
>
> Do I have to find a way to increase the verbosity of sshd in
> /var/log/secure?
You might want to check that sshd allows port forwarding
('AllowTcpForwarding yes' in /etc/ssh/sshd_config).
This is the next thing I tried after posting my previous reply.
It was commented, and the man page says it is enable by default.
Anyway, I forced it on yes, restarted sshd and tried again but with no
success.
I'm trying the same operation after increasing the sshd log verbosity.
--
Nicolas Ecarnot