Mantic verification
In all architectures, except i386, the new test passed.
Here is a log from the amd64 run[1]:
4333s autopkgtest [16:47:27]: test ssh-gssapi: [----------------------- 4333s ## Setting up test environment 4333s ## Creating Kerberos realm EXAMPLE.FAKE 4333s Initializing database '/var/lib/krb5kdc/principal' for realm 'EXAMPLE.FAKE', 4333s master key name '<email address hidden>' 4333s ## Creating principals 4333s Authenticating as principal <email address hidden> with password. 4333s Principal "<email address hidden>" created. 4333s Authenticating as principal <email address hidden> with password. 4333s Principal "<email address hidden>" created. 4333s ## Extracting service principal host/sshd-gssapi.example.fake 4333s Authenticating as principal <email address hidden> with password. 4333s Entry for principal host/sshd-gssapi.example.fake with kvno 2, encryption type aes256-cts-hmac-sha1-96 added to keytab WRFILE:/etc/krb5.keytab. 4333s Entry for principal host/sshd-gssapi.example.fake with kvno 2, encryption type aes128-cts-hmac-sha1-96 added to keytab WRFILE:/etc/krb5.keytab. 4333s ## Adjusting /etc/krb5.conf 4333s ## TESTS 4333s 4333s ## TEST test_gssapi_login 4333s ## Configuring sshd for gssapi-with-mic authentication 4333s ## Restarting ssh 4333s ## Obtaining TGT 4333s Password for <email address hidden>: 4333s Ticket cache: FILE:/tmp/krb5cc_0 4333s Default principal: <email address hidden> 4333s 4333s Valid starting Expires Service principal 4333s 04/05/24 16:47:27 04/06/24 02:47:27 <email address hidden> 4333s renew until 04/06/24 16:47:27 4333s 4333s ## ssh'ing into localhost using gssapi-with-mic auth 4333s Warning: Permanently added 'sshd-gssapi.example.fake' (ED25519) to the list of known hosts. 4334s Fri Apr 5 16:47:27 UTC 2024 4334s 4334s ## checking that we got a service ticket for ssh (host/) 4334s 04/05/24 16:47:27 04/06/24 02:47:27 host/sshd-gssapi.example.fake@ 4334s Ticket server: <email address hidden> 4334s 4334s ## Checking ssh logs to confirm gssapi-with-mic auth was used 4334s Apr 05 16:47:27 sshd-gssapi.example.fake sshd[1688]: Accepted gssapi-with-mic for testuser1620 from 127.0.0.1 port 44922 ssh2: <email address hidden> 4334s ## PASS test_gssapi_login 4334s 4334s ## TEST test_gssapi_keyex_login 4334s ## Configuring sshd for gssapi-keyex authentication 4334s ## Restarting ssh 4334s ## Obtaining TGT 4334s Password for <email address hidden>: 4334s Ticket cache: FILE:/tmp/krb5cc_0 4334s Default principal: <email address hidden> 4334s 4334s Valid starting Expires Service principal 4334s 04/05/24 16:47:28 04/06/24 02:47:28 <email address hidden> 4334s renew until 04/06/24 16:47:28 4334s 4334s ## ssh'ing into localhost using gssapi-keyex auth 4334s Fri Apr 5 16:47:28 UTC 2024 4334s 4334s ## checking that we got a service ticket for ssh (host/) 4334s 04/05/24 16:47:28 04/06/24 02:47:28 host/sshd-gssapi.example.fake@ 4334s Ticket server: <email address hidden> 4334s 4334s ## Checking ssh logs to confirm gssapi-keyex auth was used 4334s Apr 05 16:47:28 sshd-gssapi.example.fake sshd[1758]: Accepted gssapi-keyex for testuser1620 from 127.0.0.1 port 44930 ssh2: <email address hidden> 4334s ## PASS test_gssapi_keyex_login 4334s 4334s ## ALL TESTS PASSED 4334s ## Cleaning up 4334s autopkgtest [16:47:28]: test ssh-gssapi: -----------------------] 4335s ssh-gssapi PASS 4335s autopkgtest [16:47:29]: test ssh-gssapi: - - - - - - - - - - results - - - - - - - - - - 4335s autopkgtest [16:47:29]: @@@@@@@@@@@@@@@@@@@@ summary 4335s regress PASS 4335s systemd-socket-activation PASS 4335s ssh-gssapi PASS
Mantic verification succeeded.
1. https://autopkgtest.ubuntu.com/results/autopkgtest-mantic/mantic/amd64/o/openssh/20240405_164750_3a52b@/log.gz
Mantic verification
In all architectures, except i386, the new test passed.
Here is a log from the amd64 run[1]:
4333s autopkgtest [16:47:27]: test ssh-gssapi: [------ ------- ------- --- krb5kdc/ principal' for realm 'EXAMPLE.FAKE', gssapi. example. fake gssapi. example. fake with kvno 2, encryption type aes256- cts-hmac- sha1-96 added to keytab WRFILE: /etc/krb5. keytab. gssapi. example. fake with kvno 2, encryption type aes128- cts-hmac- sha1-96 added to keytab WRFILE: /etc/krb5. keytab. example. fake' (ED25519) to the list of known hosts. gssapi. example. fake@ example. fake sshd[1688]: Accepted gssapi-with-mic for testuser1620 from 127.0.0.1 port 44922 ssh2: <email address hidden> keyex_login gssapi. example. fake@ example. fake sshd[1758]: Accepted gssapi-keyex for testuser1620 from 127.0.0.1 port 44930 ssh2: <email address hidden> keyex_login ------- ------- --] @@@@@@@ @@@@@@ summary socket- activation PASS
4333s ## Setting up test environment
4333s ## Creating Kerberos realm EXAMPLE.FAKE
4333s Initializing database '/var/lib/
4333s master key name '<email address hidden>'
4333s ## Creating principals
4333s Authenticating as principal <email address hidden> with password.
4333s Principal "<email address hidden>" created.
4333s Authenticating as principal <email address hidden> with password.
4333s Principal "<email address hidden>" created.
4333s ## Extracting service principal host/sshd-
4333s Authenticating as principal <email address hidden> with password.
4333s Entry for principal host/sshd-
4333s Entry for principal host/sshd-
4333s ## Adjusting /etc/krb5.conf
4333s ## TESTS
4333s
4333s ## TEST test_gssapi_login
4333s ## Configuring sshd for gssapi-with-mic authentication
4333s ## Restarting ssh
4333s ## Obtaining TGT
4333s Password for <email address hidden>:
4333s Ticket cache: FILE:/tmp/krb5cc_0
4333s Default principal: <email address hidden>
4333s
4333s Valid starting Expires Service principal
4333s 04/05/24 16:47:27 04/06/24 02:47:27 <email address hidden>
4333s renew until 04/06/24 16:47:27
4333s
4333s ## ssh'ing into localhost using gssapi-with-mic auth
4333s Warning: Permanently added 'sshd-gssapi.
4334s Fri Apr 5 16:47:27 UTC 2024
4334s
4334s ## checking that we got a service ticket for ssh (host/)
4334s 04/05/24 16:47:27 04/06/24 02:47:27 host/sshd-
4334s Ticket server: <email address hidden>
4334s
4334s ## Checking ssh logs to confirm gssapi-with-mic auth was used
4334s Apr 05 16:47:27 sshd-gssapi.
4334s ## PASS test_gssapi_login
4334s
4334s ## TEST test_gssapi_
4334s ## Configuring sshd for gssapi-keyex authentication
4334s ## Restarting ssh
4334s ## Obtaining TGT
4334s Password for <email address hidden>:
4334s Ticket cache: FILE:/tmp/krb5cc_0
4334s Default principal: <email address hidden>
4334s
4334s Valid starting Expires Service principal
4334s 04/05/24 16:47:28 04/06/24 02:47:28 <email address hidden>
4334s renew until 04/06/24 16:47:28
4334s
4334s ## ssh'ing into localhost using gssapi-keyex auth
4334s Fri Apr 5 16:47:28 UTC 2024
4334s
4334s ## checking that we got a service ticket for ssh (host/)
4334s 04/05/24 16:47:28 04/06/24 02:47:28 host/sshd-
4334s Ticket server: <email address hidden>
4334s
4334s ## Checking ssh logs to confirm gssapi-keyex auth was used
4334s Apr 05 16:47:28 sshd-gssapi.
4334s ## PASS test_gssapi_
4334s
4334s ## ALL TESTS PASSED
4334s ## Cleaning up
4334s autopkgtest [16:47:28]: test ssh-gssapi: -------
4335s ssh-gssapi PASS
4335s autopkgtest [16:47:29]: test ssh-gssapi: - - - - - - - - - - results - - - - - - - - - -
4335s autopkgtest [16:47:29]: @@@@@@@
4335s regress PASS
4335s systemd-
4335s ssh-gssapi PASS
Mantic verification succeeded.
1. https:/ /autopkgtest. ubuntu. com/results/ autopkgtest- mantic/ mantic/ amd64/o/ openssh/ 20240405_ 164750_ 3a52b@/ log.gz