Comment 20 for bug 2053146

Revision history for this message
Andreas Hasenack (ahasenack) wrote :

Mantic verification

In all architectures, except i386, the new test passed.

Here is a log from the amd64 run[1]:

4333s autopkgtest [16:47:27]: test ssh-gssapi: [-----------------------
4333s ## Setting up test environment
4333s ## Creating Kerberos realm EXAMPLE.FAKE
4333s Initializing database '/var/lib/krb5kdc/principal' for realm 'EXAMPLE.FAKE',
4333s master key name '<email address hidden>'
4333s ## Creating principals
4333s Authenticating as principal <email address hidden> with password.
4333s Principal "<email address hidden>" created.
4333s Authenticating as principal <email address hidden> with password.
4333s Principal "<email address hidden>" created.
4333s ## Extracting service principal host/sshd-gssapi.example.fake
4333s Authenticating as principal <email address hidden> with password.
4333s Entry for principal host/sshd-gssapi.example.fake with kvno 2, encryption type aes256-cts-hmac-sha1-96 added to keytab WRFILE:/etc/krb5.keytab.
4333s Entry for principal host/sshd-gssapi.example.fake with kvno 2, encryption type aes128-cts-hmac-sha1-96 added to keytab WRFILE:/etc/krb5.keytab.
4333s ## Adjusting /etc/krb5.conf
4333s ## TESTS
4333s
4333s ## TEST test_gssapi_login
4333s ## Configuring sshd for gssapi-with-mic authentication
4333s ## Restarting ssh
4333s ## Obtaining TGT
4333s Password for <email address hidden>:
4333s Ticket cache: FILE:/tmp/krb5cc_0
4333s Default principal: <email address hidden>
4333s
4333s Valid starting Expires Service principal
4333s 04/05/24 16:47:27 04/06/24 02:47:27 <email address hidden>
4333s renew until 04/06/24 16:47:27
4333s
4333s ## ssh'ing into localhost using gssapi-with-mic auth
4333s Warning: Permanently added 'sshd-gssapi.example.fake' (ED25519) to the list of known hosts.
4334s Fri Apr 5 16:47:27 UTC 2024
4334s
4334s ## checking that we got a service ticket for ssh (host/)
4334s 04/05/24 16:47:27 04/06/24 02:47:27 host/sshd-gssapi.example.fake@
4334s Ticket server: <email address hidden>
4334s
4334s ## Checking ssh logs to confirm gssapi-with-mic auth was used
4334s Apr 05 16:47:27 sshd-gssapi.example.fake sshd[1688]: Accepted gssapi-with-mic for testuser1620 from 127.0.0.1 port 44922 ssh2: <email address hidden>
4334s ## PASS test_gssapi_login
4334s
4334s ## TEST test_gssapi_keyex_login
4334s ## Configuring sshd for gssapi-keyex authentication
4334s ## Restarting ssh
4334s ## Obtaining TGT
4334s Password for <email address hidden>:
4334s Ticket cache: FILE:/tmp/krb5cc_0
4334s Default principal: <email address hidden>
4334s
4334s Valid starting Expires Service principal
4334s 04/05/24 16:47:28 04/06/24 02:47:28 <email address hidden>
4334s renew until 04/06/24 16:47:28
4334s
4334s ## ssh'ing into localhost using gssapi-keyex auth
4334s Fri Apr 5 16:47:28 UTC 2024
4334s
4334s ## checking that we got a service ticket for ssh (host/)
4334s 04/05/24 16:47:28 04/06/24 02:47:28 host/sshd-gssapi.example.fake@
4334s Ticket server: <email address hidden>
4334s
4334s ## Checking ssh logs to confirm gssapi-keyex auth was used
4334s Apr 05 16:47:28 sshd-gssapi.example.fake sshd[1758]: Accepted gssapi-keyex for testuser1620 from 127.0.0.1 port 44930 ssh2: <email address hidden>
4334s ## PASS test_gssapi_keyex_login
4334s
4334s ## ALL TESTS PASSED
4334s ## Cleaning up
4334s autopkgtest [16:47:28]: test ssh-gssapi: -----------------------]
4335s ssh-gssapi PASS
4335s autopkgtest [16:47:29]: test ssh-gssapi: - - - - - - - - - - results - - - - - - - - - -
4335s autopkgtest [16:47:29]: @@@@@@@@@@@@@@@@@@@@ summary
4335s regress PASS
4335s systemd-socket-activation PASS
4335s ssh-gssapi PASS

Mantic verification succeeded.

1. https://autopkgtest.ubuntu.com/results/autopkgtest-mantic/mantic/amd64/o/openssh/20240405_164750_3a52b@/log.gz