Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >
article

KB-10066: SSHD Connectivity via RSA on RHEL Servers Showing a Segfault after the Latest Kernel Update

Centrify DirectControl ,  

1 April,18 at 02:44 AM

Problem:
After the Linux kernel update was installed, the customer tried to connect to the server via SSHD with and RSA device. They get an error saying "327 kernel: sshd[3485]: segfault at 70 ip 00007f5796fb0d57 sp 00007fff90c2ce98 error 4 in sshd[7f5796f36000+d2000]"

Resolution:
In the sshd_config file for the stock SSHD (5.3p1) there is a line :


UsePrivilegeSeparation

The RSA ACE/SecurID installation is calling for it to be set to no:

UsePrivilegeSeparation no

The Centrify SSHD install merges configuration directives from the stock SSHD install and then disables it and takes its place. This option crashes the SSH server.
The correct configuration for this version of SSHd (7.4p1) should be:


UsePrivilegeSeparation sandbox

After making this change, the RSA/SecurID works without an issue.

Still have questions? Click here to log a technical support case, or collaborate with your peers in Centrify's Online Community.