From owner-freebsd-current@FreeBSD.ORG Tue Jul 22 08:50:31 2008 Return-Path: Delivered-To: current@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A475D1065676 for ; Tue, 22 Jul 2008 08:50:31 +0000 (UTC) (envelope-from ng-freebsd-current@mindstep.com) Received: from postfix1-g20.free.fr (postfix1-g20.free.fr [212.27.60.42]) by mx1.freebsd.org (Postfix) with ESMTP id DB3FC8FC1B for ; Tue, 22 Jul 2008 08:50:30 +0000 (UTC) (envelope-from ng-freebsd-current@mindstep.com) Received: from smtp8-g19.free.fr (smtp8-g19.free.fr [212.27.42.65]) by postfix1-g20.free.fr (Postfix) with ESMTP id E8F022882755 for ; Tue, 22 Jul 2008 10:24:14 +0200 (CEST) Received: from smtp8-g19.free.fr (localhost [127.0.0.1]) by smtp8-g19.free.fr (Postfix) with ESMTP id 8504917F538; Tue, 22 Jul 2008 10:24:12 +0200 (CEST) Received: from crest.mindstep.com (crest.mindstep.com [88.167.204.204]) by smtp8-g19.free.fr (Postfix) with ESMTP id 4095617F515; Tue, 22 Jul 2008 10:24:12 +0200 (CEST) Received: from localhost (localhost [127.0.0.1]) by kawa.mindstep.fr (Postfix) with ESMTP id E4409FDB8F7; Tue, 22 Jul 2008 10:24:11 +0200 (CEST) (envelope-from ng-freebsd-current@mindstep.com) X-Virus-Scanned: by amavisd-new on ZunoBox at kawa.mindstep.fr Received: from kawa.mindstep.fr ([127.0.0.1]) by localhost (kawa.mindstep.fr [127.0.0.1]) (amavisd-new, port 10024) with LMTP id r6mz2auJDl-S; Tue, 22 Jul 2008 10:24:11 +0200 (CEST) Received: from [192.168.25.13] (pickwick.mindstep.fr [192.168.25.13]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by kawa.mindstep.fr (Postfix) with ESMTP id B1BF1FDB8CD; Tue, 22 Jul 2008 10:24:11 +0200 (CEST) (envelope-from ng-freebsd-current@mindstep.com) Message-ID: <48859927.4090203@mindstep.com> Date: Tue, 22 Jul 2008 10:24:07 +0200 From: Patrick Bihan-Faou User-Agent: Thunderbird 2.0.0.16 (Windows/20080708) MIME-Version: 1.0 To: Pawel Jakub Dawidek References: <20080722081449.GA3241@garage.freebsd.pl> In-Reply-To: <20080722081449.GA3241@garage.freebsd.pl> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 8bit Cc: Ian FREISLICH , current@freebsd.org Subject: Re: Recent Padlock changes break ssh X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: ng-freebsd-current@mindstep.com List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 22 Jul 2008 08:50:31 -0000 Hi, I have noticed the same problem as described by Ian, on systems using C7 processor with padlock support compiled in the kernel, the very first connection via SSH fails with the message indicated below (bad packet length), subsequent connections are always fine. This is with FreeBSD 6.x (I am now using 6.3-p3, but this has been noticed since I started using C7 bases systems with FreeBSD 6.0) Patrick. Pawel Jakub Dawidek a écrit : > On Tue, Jul 22, 2008 at 07:05:37AM +0200, Ian FREISLICH wrote: > >> Hi >> >> Reverting to src/sys/crypto/via/padlock.c to r1.13 allow me to once >> again ssh into my VIA C7 based system. >> >> I get the following error on the local side when attempting to ssh >> to the server when r1.14 is in use. >> >> [apple] ~ $ ssh control.freislich.nom.za >> Disconnecting: Bad packet length 4108489293. >> [apple] ~ $ ssh control.freislich.nom.za >> Disconnecting: Bad packet length 3064303097. >> >> I do however see this message on the very first ssh attempt to the >> server in question with a working kernel (12 July 2008). Subsequent >> connections connections work correctly. >> > > Could you try this patch? Those are the only changes that could > eventually change the behaviour. > > http://people.freebsd.org/~pjd/patches/padlock.c.patch > >