SSH Slow Login even with SSHD UseDNS no parameter

I couldn't understand why on one system it took a few minutes to get the SSH login prompt when connecting to other systems. The other systems all had the UseDNS parameter set to no, which almost always resolves the login prompt delay.

The reason is Ubuntu and perhaps Debian and other distributions /etc/nsswitch.conf file

Edit yours to have the "hosts" line like so (notice that files and dns are the primary resolution choice)

hosts:          files dns mdns4_minimal [NOTFOUND=return] dns mdns4


If the above does not work - disable GSSAPI auth

This permanently caused my slow SSH login problems:

Edit vi /etc/ssh/ssh_config

Disable GSSAPI auth by setting the following line (make sure to uncomment or change the existing line if there is one that says yes):

GSSAPIAuthentication no

I realized what has happening by running -v with SSH, it kept timing out and trying to use GSSAPIAuthentication before trying password, unlike some older systems I have.

I'm sure this is a real annoyance for a lot of people too.


Tags:

ssh, login, sshd, usedns, parameteri, couldn, prompt, connecting, parameter, resolves, ubuntu, debian, distributions, etc, nsswitch, conf, edit, quot, hosts, dns, primary, resolution, mdns, _minimal, notfound, disable, gssapi, auth, permanently, vi, ssh_config, uncomment, existing, gssapiauthentication, password, annoyance,

Latest Articles

  • Linux Ubuntu Cannot Print Large Images
  • Cannot Print PDF Solution and Howto Resize
  • Linux Console Login Screen TTY Change Message
  • Apache Cannot Start Listening Already on 0.0.0.0
  • MySQL Bash Query to pipe input directly without using heredoc trick
  • CentOS 6 and 7 / RHEL Persistent DHCP Solution
  • Debian Ubuntu Mint rc-local service startup error solution rc-local.service: Failed at step EXEC spawning /etc/rc.local: Exec format error
  • MySQL Cheatsheet Guide and Tutorial
  • bash script kill whois or other command that is running for too long
  • Linux tftp listens on all interfaces and IPs by DEFAULT Security Risk Hole Solution
  • python import docx error
  • Cisco Unified Communications Manager Express Cheatsheet CUCME CME
  • Linux Ubuntu Debian Missing privilege separation directory: /var/run/sshd
  • bash how to count the number of columns or words in a line
  • bash if statement how to test program output without assigning to variable
  • RTNETLINK answers: Network is unreachable
  • Centos 7 how to save iptables rules like Centos 6
  • nfs tuning maximum amount of connections
  • qemu-kvm error "Could not initialize SDL(No available video device) - exiting"
  • Centos 7 tftpd will not work with selinux enabled