SFTP not connecting when 1P SSH Agent is configured

Options

When the 1P ssh agent is configured, I'm unable to connect to an SFTP server with password auth. Disabling the agent and I can connect without any issues.

1: Transmit 5.8.8 (x86_64) Session Transcript [Version 12.5.1 (Build 21G83)] (30/08/22, 8:57 AM)
1: Connecting to file-transfer.example.com user:dev_user port:22
1: Key Ex: Sent KEX: curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,diffie-hellman-group14-sha256,diffie-hellman-group14-sha1,diffie-hellman-group1-sha1,diffie-hellman-group-exchange-sha1,ext-info-c
1: Key Ex: Sent HOSTKEY: ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,ecdsa-sha2-nistp256-cert-v01@openssh.com,ecdsa-sha2-nistp384-cert-v01@openssh.com,ecdsa-sha2-nistp521-cert-v01@openssh.com,ssh-ed25519,rsa-sha2-512,rsa-sha2-256,ssh-rsa,ssh-dss
1: Key Ex: Sent CRYPT_CS: chacha20-poly1305,chacha20-poly1305@openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes256-cbc,rijndael-cbc@lysator.liu.se,aes192-cbc,aes128-cbc,blowfish-cbc,arcfour128,arcfour,cast128-cbc,3des-cbc
1: Key Ex: Sent CRYPT_SC: chacha20-poly1305,chacha20-poly1305@openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes256-cbc,rijndael-cbc@lysator.liu.se,aes192-cbc,aes128-cbc,blowfish-cbc,arcfour128,arcfour,cast128-cbc,3des-cbc
1: Key Ex: Sent MAC_CS: hmac-sha2-512-etm@openssh.com,hmac-sha2-512,hmac-sha2-256-etm@openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96,hmac-ripemd160,hmac-ripemd160@openssh.com
1: Key Ex: Sent MAC_SC: hmac-sha2-512-etm@openssh.com,hmac-sha2-512,hmac-sha2-256-etm@openssh.com,hmac-sha2-256,hmac-sha1,hmac-sha1-96,hmac-md5,hmac-md5-96,hmac-ripemd160,hmac-ripemd160@openssh.com
1: Key Ex: Sent COMP_CS: zlib,zlib@openssh.com,none
1: Key Ex: Sent COMP_SC: zlib,zlib@openssh.com,none
1: Key Ex: Sent LANG_CS: 
1: Key Ex: Sent LANG_SC: 
1: Key Ex: Agreed on KEX method: ecdh-sha2-nistp256
1: Key Ex: Agreed on HOSTKEY method: rsa-sha2-512
1: Key Ex: Agreed on CRYPT_CS method: aes256-cbc
1: Key Ex: Agreed on CRYPT_SC method: aes256-cbc
1: Key Ex: Agreed on MAC_CS method: hmac-sha2-256
1: Key Ex: Agreed on MAC_SC method: hmac-sha2-256
1: Key Ex: Agreed on COMP_CS method: zlib
1: Key Ex: Agreed on COMP_SC method: zlib
1: Key Ex: Initiating ECDH SHA2 NISTP256
1: Key Ex: Server's MD5 Fingerprint: e2:2a:15:2d:6a:0c:5c:fa:ea:ae:69:b7:d1:07:5d:2a
1: Key Ex: Server's SHA1 Fingerprint: 2f:5f:91:82:61:7b:06:32:a9:93:6a:55:8e:3a:78:bb:e0:aa:11:c9
1: Key Ex: Server's SHA256 Fingerprint: NV3WCIgQbqAje7kv9euIXMUSGFPkrtxwcyC7qpbe2kk=
1: Key Ex: Received NEWKEYS message
1: Key Ex: session_id calculated
1: Key Ex: Client to Server IV and Key calculated
1: Key Ex: Server to Client IV and Key calculated
1: Key Ex: Client to Server HMAC Key calculated
1: Key Ex: Server to Client HMAC Key calculated
1: Key Ex: Client to Server compression initialized
1: Key Ex: Server to Client compression initialized
1: Key Ex: Server to Client extension server-sig-algs: ssh-dss,ssh-rsa,rsa-sha2-256,rsa-sha2-512,x509v3-sign-rsa,x509v3-sign-dss,x509v3-sign-rsa-sha1,x509v3-ssh-rsa,x509v3-ssh-dss,x509v3-ecdsa-sha2-nistp256,x509v3-ecdsa-sha2-nistp384,x509v3-ecdsa-sha2-nistp521,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,x509v3-rsa2048-sha256,ssh-rsa-cert-v01@openssh.com,ssh-dss-cert-v01@openssh.com,ecdsa-sha2-nistp256-cert-v01@openssh.com,ecdsa-sha2-nistp384-cert-v01@openssh.com,ecdsa-sha2-nistp521-cert-v01@openssh.com
1: SSH-2.0-GoAnywhere6.8.7
1: Agent path:/Users/testuser/Library/Group Containers/2BUA8C4S2C.com.1password/t/agent.sock
1: Reading known hosts file: /Volumes/Macintosh HD/Users/testuser/.ssh/known_hosts
1: Received authentication challenge.
1: Userauth: Permitted auth methods: password,publickey,keyboard-interactive
1: Failure Event: 0 - agent list id failed
1: Key Ex: Signing using rsa-sha2-512
1: Userauth: Attempting publickey authentication
1: Failure Event: -18 - Username/PublicKey combination invalid
1: Key Ex: Signing using rsa-sha2-512
1: Userauth: Attempting publickey authentication
1: Failure Event: -18 - Username/PublicKey combination invalid
1: Key Ex: Signing using ssh-ed25519
1: Userauth: Attempting publickey authentication
1: Failure Event: -18 - Username/PublicKey combination invalid
1: Key Ex: Signing using rsa-sha2-512
1: Userauth: Attempting publickey authentication
1: Failure Event: -18 - Username/PublicKey combination invalid
1: Key Ex: Signing using ssh-ed25519
1: Userauth: Attempting publickey authentication
1: Failure Event: -13 - socket disconnect
1: Failure Event: -19 - Waiting for USERAUTH response
1: Userauth: Attempting keyboard-interactive authentication
1: Failure Event: -18 - Waiting for keyboard USERAUTH response
1: Userauth: Attempting to login using password authentication
1: Failure Event: -13 - Waiting for password response
1: Failure Event: -13 - Failed getting response
1: Authentication failed, error -13
1: Canceling…

1Password Version: 8.9.4
Extension Version: Not Provided
OS Version: macOS 12.5.1
Browser:_ Not Provided

Comments

  • gdhnz
    gdhnz
    Community Member
    Options

    Looks like I've fixed it. I needed to add IdentitiesOnly yes to my ~/.ssh/config

  • gdhnz
    gdhnz
    Community Member
    Options

    Related to this, can check for the IdentityAgent setting in ~/.ssh/config also check for the existence of the SSH_AUTH_SOCK environment variable?

This discussion has been closed.