You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@guacamole.apache.org by "Victor Sundin (Jira)" <ji...@apache.org> on 2020/09/06 10:26:00 UTC
[jira] [Commented] (GUACAMOLE-745) Add support for OpenSSH private
key format
[ https://issues.apache.org/jira/browse/GUACAMOLE-745?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17191235#comment-17191235 ]
Victor Sundin commented on GUACAMOLE-745:
-----------------------------------------
I got so fed up with this, but finally got it working without the use of the ssh-keygen utility....
The commands below will get you the correct headers
{code:java}
KEYFILE=~/.ssh/<keyname>{code}
{code:java}
openssl genrsa -out ${KEYFILE} 2048{code}
{code:java}
ssh-keygen -y -f ${KEYFILE} > ${KEYFILE}.pub
{code}
> Add support for OpenSSH private key format
> ------------------------------------------
>
> Key: GUACAMOLE-745
> URL: https://issues.apache.org/jira/browse/GUACAMOLE-745
> Project: Guacamole
> Issue Type: Improvement
> Components: guacd, SSH
> Environment: Docker official images 1.0.0
> Reporter: Julien Nicoulaud
> Priority: Minor
>
> Since OpenSSH 7.8, {{ssh-keygen}} does not generate keys in PEM format by default anymore: [https://www.openssh.com/txt/release-7.8]
> Attempting to use keys in the new format in Guacamole does not work, and does not print any helpful error message even in debug mode:
> {code:java}
> guacd_1 | guacd[296]: DEBUG: Attempting private key import (WITHOUT passphrase)
> guacd_1 | guacd[296]: DEBUG: Initial import failed: (null)
> guacd_1 | guacd[296]: DEBUG: Re-attempting private key import (WITH passphrase)
> guacd_1 | guacd[296]: ERROR: Auth key import failed: (null){code}
> It would be nice if keys in OpenSSH new format were supported. At least a more helpful error message should be printed (like "unrecognized key format").
--
This message was sent by Atlassian Jira
(v8.3.4#803005)