RE: what happened??

From: Joseph Mah <mah_joseph_at_**********.***>
Date: Thu Nov 13 2003 - 16:50:14 EST

Yes I tried setting strictmodes to no and also chmod 600 on authorized_keys2
but nothing. It still asks for the password. Pretty baffling. Unless
there are other keys that are causing the problem?

>From: "Johnson, Michael" <Michael.Johnson.03@mckenna.edu>
>Reply-To: Secure Shell Discussions <ssh-l@erdelynet.com>
>To: "'Secure Shell Discussions'" <ssh-l@erdelynet.com>
>Subject: RE: what happened??
>Date: Thu, 13 Nov 2003 08:22:43 -0800
>
>If sshd_config has strictmodes set to yes, you need to make sure the key is
>only readable/writable by the user it belongs to (600 perms on unix). Any
>other permissions cause problems. You can try "strictmodes no" and see if
>that works, or try setting the permission on the keys.
>
> -Michael
> http://lexa.mckenna.edu/sshwindows/
>
>-----Original Message-----
>From: Joseph Mah [mailto:mah_joseph@hotmail.com]
>Sent: Thursday, November 13, 2003 6:20 AM
>To: ssh-l@erdelynet.com
>Subject: RE: what happened??
>
>
>Yes exactly, I've tried poking and prodding around with permissions but
>nothing. Something was changed and I think the only way is to probably
>reinstall Cygwin again.
>The SSHD service DOES start up, it's just not using key authentication.
>
>Well passwords are encrypted so that's ok, thanks for the info Michael...
>
>
> >From: "Lewis Shobbrook" <lshobbrook@fasttrack.net.au>
> >Reply-To: Secure Shell Discussions <ssh-l@erdelynet.com>
> >To: "Secure Shell Discussions" <ssh-l@erdelynet.com>
> >Subject: RE: what happened??
> >Date: Thu, 13 Nov 2003 10:26:40 +1100
> >
> > I've seen something similar to this occur. After some experimentation,
> >it appeared to be changing the default permissions on ssh related files
> >and folders as recommended at some web sites. The service starts when
> >first installed, the permissions are changed, the service stays up.
> >Reboot and service won't start. I recall that after wasting a bit of
> >time on toying with permissions and basically removed cygwin completely
> >and started from scratch, without altering the default opermissions on
> >any of the files, may be a security risk (only use it in a protected
> >network) but it works happily with automatic key based authentication
> >for rsync which is why I use it.
> >
> >Probably not much help, but there you go.
> >
> >Cheers,
> >
> >Lewis
> >
> > > -----Original Message-----
> > > From: ssh-l-bounces@erdelynet.com
> > > [mailto:ssh-l-bounces@erdelynet.com] On Behalf Of Johnson, Michael
> > > Sent: Thursday, 13 November 2003 09:12
> > > To: 'Secure Shell Discussions'
> > > Subject: RE: what happened??
> > >
> > > Hm. I have not had that happen with keys, perhaps someone
> > > else on the list has seen that?
> > >
> > > This reply is mostly to stress that passwords are NOT sent in
> > > the clear.
> > > They are sent encrypted to the server (unlike telnet, ftp, etc).
> > >
> > > -Michael
> > > http://lexa.mckenna.edu/sshwindows/
> > >
> > > -----Original Message-----
> > > From: Joseph Mah [mailto:mah_joseph@hotmail.com]
> > > Sent: Wednesday, November 12, 2003 1:59 PM
> > > To: ssh-l@erdelynet.com
> > > Subject: what happened??
> > >
> > >
> > > I set up Cygwin SSHD and it was working perfectly, accepting
> > > authorized keys
> > >
> > > using SSH2. After rebooting the W2K machine, it suddenly
> > > stopped using key
> > > authentication. Now the only option I am left with is
> > > cleartext passwords.
> > >
> > > Can anyone tell me what changed or what permissions I should
> > > reset perhaps??
> > >
> > > _________________________________________________________________
> > > Compare high-speed Internet plans, starting at $26.95.
> > > https://broadband.msn.com (Prices may vary by service area.)
> > >
> > > --
> > > List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
> > > List Archives: http://erdelynet.com/archive/ssh-l/
> > > To Unsubscribe: Go to
> > > http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
> > > and enter your email address at the bottom.
> > > If you don't know your password, have it emailed to you. Then
> > > unsubscribe.
> > > ###########################################
> > >
> > > This message has been scanned by F-Secure Anti-Virus for
> > > Microsoft Exchange.
> > > For more information, connect to http://www.F-Secure.com/
> > > --
> > > List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
> > > List Archives: http://erdelynet.com/archive/ssh-l/
> > > To Unsubscribe: Go to
> > > http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
> > > and enter your email address at the bottom.
> > > If you don't know your password, have it emailed to you. Then
> > > unsubscribe.
> > >
> >
> >--
> >List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
> >List Archives: http://erdelynet.com/archive/ssh-l/
> >To Unsubscribe: Go to
> >http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
> >and enter your email address at the bottom.
> >If you don't know your password, have it emailed to you. Then
>unsubscribe.
>
>_________________________________________________________________
>Crave some Miles Davis or Grateful Dead? Your old favorites are always
>playing on MSN Radio Plus. Trial month free!
>http://join.msn.com/?page=offers/premiumradio
>
>--
>List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
>List Archives: http://erdelynet.com/archive/ssh-l/
>To Unsubscribe: Go to
>http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
>and enter your email address at the bottom.
>If you don't know your password, have it emailed to you. Then unsubscribe.
>###########################################
>
>This message has been scanned by F-Secure Anti-Virus for Microsoft
>Exchange.
>For more information, connect to http://www.F-Secure.com/
>--
>List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
>List Archives: http://erdelynet.com/archive/ssh-l/
>To Unsubscribe: Go to
>http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
>and enter your email address at the bottom.
>If you don't know your password, have it emailed to you. Then unsubscribe.

_________________________________________________________________
Frustrated with dial-up? Get high-speed for as low as $26.95.
https://broadband.msn.com (Prices may vary by service area.)

--
List Information: http://tech.erdelynet.com/mailman/listinfo/ssh-l/
List Archives:    http://erdelynet.com/archive/ssh-l/
To Unsubscribe: Go to http://tech.erdelynet.com/mailman/options/ssh-l#subscribers
and enter your email address at the bottom.
If you don't know your password, have it emailed to you. Then unsubscribe.
Received on Thu Nov 13 18:08:43 2003

This archive was generated by hypermail 2.1.8 : Fri Jul 29 2005 - 17:34:01 EDT