ssh-copy-id 有时挂起

ssh-copy-id hanging sometimes

这是我上周 question 的 "follow up"。基本上我看到一些 python 使用 pexpect 偶尔 的 ssh-copy-id 代码挂起。

我认为这可能是一个预期问题,但在我能够从这样的挂起中收集到 "stacktrace" 之后,我不再那么确定了。 在这里您可以看到我的应用程序的一些痕迹;接下来是 运行 进入超时后的堆栈跟踪:

2016-07-01 13:23:32 DEBUG           copy command: ssh-copy-id -i /yyy/.ssh/id_rsa.pub someuser@some.ip
2016-07-01 13:23:33 DEBUG           first expect: 1
2016-07-01 13:23:33 DEBUG           sending PASSW0RD
2016-07-01 13:23:33 DEBUG           consuming output from remote side ... 
2016-07-01 13:24:03 INFO            Timeout occured ... stack trace information ...

2016-07-01 13:24:03 INFO            Traceback (most recent call last):


File "/usr/local/lib/python3.5/site-packages/pexpect-3.3-py3.5.egg/pexpect/__init__.py", line 1535, in expect_loop
c = self.read_nonblocking(self.maxread, timeout)
File "/usr/local/lib/python3.5/site-packages/pexpect-3.3-py3.5.egg/pexpect/__init__.py", line 968, in read_nonblocking
raise TIMEOUT('Timeout exceeded.')
pexpect.TIMEOUT: Timeout exceeded.

During handling of the above exception, another exception occurred:
Traceback (most recent call last):
 File "xxx/PrepareSsh.py", line 28, in execute
   self.copy_keys(context, user, timeout)
 File "xxx/PrepareSsh.py", line 83, in copy_keys
   child.expect('[#$]')
 File "/usr/local/lib/python3.5/site-packages/pexpect-3.3-py3.5.egg/pexpect/__init__.py", line 1451, in expect
timeout, searchwindowsize)
 File "/usr/local/lib/python3.5/site-packages/pexpect-3.3-py3.5.egg/pexpect/__init__.py", line 1466, in expect_list
timeout, searchwindowsize)
 File "/usr/local/lib/python3.5/site-packages/pexpect-3.3-py3.5.egg/pexpect/__init__.py", line 1568, in expect_loop
raise TIMEOUT(str(err) + '\n' + str(self))
pexpect.TIMEOUT: Timeout exceeded.
<pexpect.spawn object at 0x2b74694995c0>
version: 3.3
command: /usr/bin/ssh-copy-id
args: ['/usr/bin/ssh-copy-id', '-i', '/yyy/.ssh/id_rsa.pub', 'someuser@some.ip']
searcher: <pexpect.searcher_re object at 0x2b746ae1c748>
buffer (last 100 chars): b'\r\n/usr/bin/xauth:  creating new authorityy file /home/hmcmanager/.Xauthority\r\n'
before (last 100 chars): b'\r\n/usr/bin/xauth:  creating new authority file /home/hmcmanager/.Xauthority\r\n'
after: <class 'pexpect.TIMEOUT'>

所以,我觉得有点奇怪:xauth 出现在预期收到的消息中。

你看,今天我又创建了一个虚拟机来测试;并手动完成所有设置。这是我这样做时看到的:

> ssh-copy-id -i ~/.ssh/id_rsa.pub someuser@some.ip

 /usr/bin/ssh-copy-id: INFO: Source of key(s) to be installed: "/xxx/.ssh/id_rsa.pub"
The authenticity of host 'some.ip (some.ip)' can't be established.
ECDSA key fingerprint is SHA256:7...
Are you sure you want to continue connecting (yes/no)? yes
/usr/bin/ssh-copy-id: INFO: attempting to log in with the new key(s), to filter out any that are already installed
/usr/bin/ssh-copy-id: INFO: 1 key(s) remain to be installed -- if you are prompted now it is to install the new keys
someuser@some.ip's password: 
Number of key(s) added: 1
Now try logging into the machine, with:   ....

那么,让我们回顾一下:

这让我发疯。欢迎任何想法。

xauth 参考看起来像是在请求 X11 转发。它将在您的 ~/.ssh/config 中配置。这可能是导致挂起的配置差异。