Re: openssh + active directory

From: Frank Pikelner <pikelner_at_**********.***>
Date: Tue Jun 19 2007 - 20:46:37 EDT

Stephen,

I could not recall the package we were using at work, but here is the
information. The OpenSSH package we are using may not be presently
maintained, but works very well for Windows/AD and interoperating with most
other SSH daemons on Linux, OSX, etc.

We¹ve used the OpenSSH for Windows from http://sshwindows.sourceforge.net/
and it has worked very well for us.
 
1) Download and install the OpenSSH software.

2) Once OpenSSH is installed, and if you used the default path, open
³C:\Program Files\OpenSSH\docs>quickstart.txt²

3) OpenSSH should be installed as a service but not running. You now
need to configure groups and users that will be allowed to connect.

4) If you want to use Active Directory for authentication, (computer
must be part of AD domain) follow the QUICKSTART.TXT document and execute
from OpenSSH:

a. mkgroup -d >> ..\etc\group (domain groups)

b. mkpasswd -d [-u <username>] >> ..\etc\passwd (domain users)

5) Start OpenSSH service

6) You should now be able to connect using ³ssh
ad_account@xxx.xxx.xxx.xxx², where xxx.xxx.xxx.xxx is the IP address of the
system you are connecting to using SSH.

 
Please let me know if this works for you.
 
Cheers,
 
Frank Pikelner

On 6/18/07 11:48 PM, "Herr, Stephen" <herrs@contechbridge.com> wrote:

> Frank,
>
> I am sure many others would appreciate the info. Why not just
> post it here so we all can reference it if needed and it will get into
> search engines and such.
>
> Stephen
>
> Stephen A. Herr
> CONTECH Bridge Solutions Inc.
>
> 3100 Research Blvd.
> P.O. Box 20266
> Dayton, OH 45420
> 937.254.2233 Main
> 303.506.8434 Cell
> www.contechbridge.com <http://www.contechbridge.com/>
>
> herrs@contechbridge.com <mailto:sherr@contechbridge.com>
> please note new email address
>
>
>
>
>
> From: ssh@erdelynet.com [mailto:ssh@erdelynet.com] On Behalf Of Frank Pikelner
> Sent: Monday, June 18, 2007 2018
> To: ssh@erdelynet.com
> Subject: Re: openssh + active directory
>
> Alan,
>
> Yes, OpenSSH does work with AD. You need to configure OpenSSH config files.
> Send me an email at frank.pikelner@blue-dot.ca and I can provide instructions.
>
> Frank
>
>
> On 6/18/07 9:52 AM, "Alan Neville" <alan@barlan.ie> wrote:
>
>> Hello,
>>
>> I have just installed OpenSSH on a windows 2k3 server and I'm looking for a
>> way to integrate it with Active Directory. Is this possible?
>>
>> Many Thanks,
>>
>> --
>> Alan Neville
>>
>> Technical Support and Helpdesk,
>> Barlan Technologies,
>> Unit a, Broomfield Business Pk, Malahide, Dublin
>>
>> [e] alan dot neville at barlan dot ie
>> [p] +353 1 866 6111
>> [f] +353 1 633 5612
>>
>>
>
>
> The information contained in this message may be confidential and/or
> proprietary, and legally protected from disclosure. If the reader of this
> message is not the intended recipient, or an employee or agent responsible for
> delivering this message to the intended recipient, you are hereby notified
> that any retention, dissemination, distribution or copying of this
> communication is strictly prohibited. If you have received this communication
> in error, please notify us immediately by replying to the message and
> permanently deleting it from your computer. Thank you, CONTECH Construction
> Products Inc.

--
List Info:      http://erdelynet.com/ssh-l/
List Archives:  http://erdelynet.com/archive/ssh-l/
To Unsubscribe: Mail mailto:ssh+unsubscribe@erdelynet.com
Received on Tue, 19 Jun 2007 20:46:37 -0400

This archive was generated by hypermail 2.1.8 : Wed Jul 04 2007 - 17:02:20 EDT