Re: Silently configure sshd fails via system account

2014-04-01 Thread Corinna Vinschen
On Mar 19 17:57, Corinna Vinschen wrote: > On Mar 19 11:54, Paul Griffith wrote: > > On 03/18/2014 09:24 PM, PolarStorm wrote: > > > Paul Griffith wrote > > >> ... > > >> /usr/bin/ssh-host-config --yes --cygwin ntsec --user cyg_server --pwd > > >> blah > > >> ... > > > > > > Just a few things...

Re: Silently configure sshd fails via system account

2014-03-24 Thread Corinna Vinschen
On Mar 20 20:37, Lord Laraby wrote: > Thanks for all the responses. I appreciate the attention given to > ssh-host-config since this problem. One of my problems was that I was > semi-braindead when I ran it and selected yes to privsep when I meant > no. It would have been simpler, I think. Really,

Re: Silently configure sshd fails via system account

2014-03-20 Thread Lord Laraby
Thanks for all the responses. I appreciate the attention given to ssh-host-config since this problem. One of my problems was that I was semi-braindead when I ran it and selected yes to privsep when I meant no. It would have been simpler, I think. Really, it it had at least done chmod on the files t

Re: Silently configure sshd fails via system account

2014-03-19 Thread Andrey Repin
Greetings, PolarStorm! >> I attached a new incarnation of the ssh-host-config script to this >> mail. >> ... >> - The "UsePrivilegeSeparation" setting in /etc/sshd_config now takes into >> account that the default setting is "sandbox", which doesn't make >> sense on Cygwin. >> ... >> I also tw

Re: Silently configure sshd fails via system account

2014-03-19 Thread Corinna Vinschen
On Mar 19 12:35, PolarStorm wrote: > Corinna Vinschen-2 wrote > > I attached a new incarnation of the ssh-host-config script to this > > mail. > > ... > > - The "UsePrivilegeSeparation" setting in /etc/sshd_config now takes into > > account that the default setting is "sandbox", which doesn't mak

Re: Silently configure sshd fails via system account

2014-03-19 Thread PolarStorm
n the cygwin-service-installation-helper.sh script? (~ line 2932). BTW. How come and why does this account/user even have a pas-wor-d? (And what is it? I certainly didn't set it...) -- View this message in context: http://cygwin.1069669.n5.nabble.com/Silently-configure-sshd-fails-vi

Re: Silently configure sshd fails via system account

2014-03-19 Thread Paul Griffith
On 03/18/2014 09:24 PM, PolarStorm wrote: > Paul Griffith wrote >> ... >> /usr/bin/ssh-host-config --yes --cygwin ntsec --user cyg_server --pwd blah >> ... > > Just a few things... > > 1) Don't do that (manually). > First of all, "ntsec" is deprecated. Second, there are a lot of strange > issues

Re: Silently configure sshd fails via system account

2014-03-19 Thread Corinna Vinschen
On Mar 19 11:54, Paul Griffith wrote: > On 03/18/2014 09:24 PM, PolarStorm wrote: > > Paul Griffith wrote > >> ... > >> /usr/bin/ssh-host-config --yes --cygwin ntsec --user cyg_server --pwd blah > >> ... > > > > Just a few things... > > > > 1) Don't do that (manually). > > First of all, "ntsec" i

Re: Silently configure sshd fails via system account

2014-03-19 Thread Corinna Vinschen
On Mar 18 18:24, PolarStorm wrote: > 3) Check your /etc/sshd-config for: "UsePrivilegeSeparation sandbox" which > is > the new default. The ssh-host-config script has a bug on line 169 that > attempts > to set this to "no", but where the regex fails. (I told people in THIS >

Re: Silently configure sshd fails via system account

2014-03-18 Thread PolarStorm
hed the main mailing list.) 4) The sshd user pas-wor-d is set to expire by default after 42 days, in Windows 8.1. Fix it if you're using that. -- View this message in context: http://cygwin.1069669.n5.nabble.com/Silently-configure-sshd-fails-via-system-account-tp106607p107203.html S

Re: Silently configure sshd fails via system account

2014-03-18 Thread Corinna Vinschen
On Mar 17 21:54, Lord Laraby wrote: > On Mon, Mar 17, 2014 at 7:43 PM, Andrey Repin <> wrote: > > Greetings, Lord Laraby! > > > >> Oh and I forgot the most intriguing gotcha. After creating the sshd > >> user for me (I went to service manager and discovered this) the user > >> assigned to the sshd

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
On Mon, Mar 17, 2014 at 7:43 PM, Andrey Repin <> wrote: > Greetings, Lord Laraby! > >> Oh and I forgot the most intriguing gotcha. After creating the sshd >> user for me (I went to service manager and discovered this) the user >> assigned to the sshd server was actually cyg_server (not sshd)! >

Re: Silently configure sshd fails via system account

2014-03-17 Thread Andrey Repin
Greetings, Lord Laraby! > Oh and I forgot the most intriguing gotcha. After creating the sshd > user for me (I went to service manager and discovered this) the user > assigned to the sshd server was actually cyg_server (not sshd)! > After changing all of those things the service started. That

Re: Silently configure sshd fails via system account

2014-03-17 Thread Larry Hall (Cygwin)
On 3/17/2014 7:28 PM, Lord Laraby wrote: On Mon, Mar 17, 2014 at 7:22 PM, Henry S. Thompson wrote: I should have said I did exactly _no_ group/permission by-hand fiddling to get the setup I sent. All happened auto-magically as a result of basic install. Looking at my download area, I see I in

Re: Silently configure sshd fails via system account

2014-03-17 Thread Larry Hall (Cygwin)
On 3/17/2014 7:22 PM, Henry S. Thompson wrote: Lord Laraby writes: That's interesting. sshd-host-config gave me only sshd as a privileged user name, cyg_server is already taken by a non-prvileged user connected to the cygserver service. Also, at no time does mkgroup create a group called root.

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
On Mon, Mar 17, 2014 at 7:22 PM, Henry S. Thompson wrote: > I should have said I did exactly _no_ group/permission by-hand > fiddling to get the setup I sent. All happened auto-magically as a > result of basic install. Looking at my download area, I see I > installed cygwin, cygrunsrv and openss

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
Oh and I forgot the most intriguing gotcha. After creating the sshd user for me (I went to service manager and discovered this) the user assigned to the sshd server was actually cyg_server (not sshd)! After changing all of those things the service started. -- Problem reports: http://cygw

Re: Silently configure sshd fails via system account

2014-03-17 Thread Henry S. Thompson
Lord Laraby writes: > That's interesting. sshd-host-config gave me only sshd as a privileged > user name, cyg_server is already taken by a non-prvileged user > connected to the cygserver service. > Also, at no time does mkgroup create a group called root. That suggests an earlier (Cygwin-install

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
Okay, I figured out the whole issue. The script suggested non-privleged user sshd as the service user. I allowed that and the user was created. However the issues the script messed up are: 1) The account was never activated - "net user sshd /active:yes" had to be run at the command line. 2) All of

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
Followup. I changed everything permissions on /var/empty, group name, everything now matches your setup (except user name and RID). Still fails with the same message. -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
Oh, and sshd's entry is etc/passwd: sshd:unused:1008:513:sshd privsep,U-primaryserver\sshd,S-1-5-21-3985440655-1503118989-471546470-1008:/cygdrive/k/Cygwin/var/empty:/bin/bash The service control manager says sshd is the user and the password is the one I gave it. There error in sshd.log is: /var/

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
That's interesting. sshd-host-config gave me only sshd as a privileged user name, cyg_server is already taken by a non-prvileged user connected to the cygserver service. Also, at no time does mkgroup create a group called root. I tried that, but it screwed everything up. Of course, I used Administr

Re: Silently configure sshd fails via system account

2014-03-17 Thread Henry S. Thompson
Lord Laraby writes: > I cannot understand how to do what it wants in order to start. Any > help would be appreciated. I can send cygcheck.out if desired. This is > Windows 8.1 ver 6.3 -- 64-bit. Cygwin (64-bit) is installed in a USB > hard drive K:\cygwin and I recently did an update by running se

Re: Silently configure sshd fails via system account

2014-03-17 Thread Lord Laraby
I am also having serious issues with sshd-host-config. I ran it right from the command line, from the built-in administrator account. It failed to start with no message in the Event Log. But, the /var/log/sshd.log said none of the keys were properly secured and refused them all. I chmod'ed them all

Re: Silently configure sshd fails via system account

2014-02-24 Thread Paul Griffith
On 02/21/2014 03:58 PM, Larry Hall (Cygwin) wrote: > On 2/21/2014 3:48 PM, Paul Griffith wrote: >> Hi, >> >> I am using a software package called WPKG (wpkg.org) to silently deploy >> Cygwin and then configure SSHD. The Cygwin installation works like a >> charm. Configuring sshd is another story. I

Re: Silently configure sshd fails via system account

2014-02-21 Thread Larry Hall (Cygwin)
On 2/21/2014 3:48 PM, Paul Griffith wrote: Hi, I am using a software package called WPKG (wpkg.org) to silently deploy Cygwin and then configure SSHD. The Cygwin installation works like a charm. Configuring sshd is another story. If I run my script from a admin command prompt, I am to setup sshd

Silently configure sshd fails via system account

2014-02-21 Thread Paul Griffith
Hi, I am using a software package called WPKG (wpkg.org) to silently deploy Cygwin and then configure SSHD. The Cygwin installation works like a charm. Configuring sshd is another story. If I run my script from a admin command prompt, I am to setup sshd. If I run that same script from WPKG, it