delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2004/04/27/11:37:44

Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sources.redhat.com/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sources.redhat.com/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com
Reply-To: Cygwin List <cygwin AT cygwin DOT com>
Message-Id: <6.1.0.6.0.20040427112959.03765348@127.0.0.1>
X-Sender:
Date: Tue, 27 Apr 2004 11:33:13 -0400
To: cygwin AT cygwin DOT com, Greg Rudd <G DOT Rudd AT isu DOT usyd DOT edu DOT au>
From: Larry Hall <cygwin-lh AT cygwin DOT com>
Subject: Re: SUMMARY sort of: OpenSSH public key authentication woes
In-Reply-To: <Pine.GSO.4.56.0404271119550.3335@slinky.cs.nyu.edu>
References: <BAY10-F37DeOCLkWzq70000556e AT hotmail DOT com> <200404271516 DOT 48883 DOT G DOT Rudd AT isu DOT usyd DOT edu DOT au> <Pine DOT GSO DOT 4 DOT 56 DOT 0404271119550 DOT 3335 AT slinky DOT cs DOT nyu DOT edu>
Mime-Version: 1.0

At 11:21 AM 4/27/2004, you wrote:
>On Tue, 27 Apr 2004, Greg Rudd wrote:
>
>> On Tue, 27 Apr 2004 02:12 am, Karl M wrote:
>> > Hi Greg...
>> >
>> > Try setting your authorized_keys to 644 for now. If that doesn't work, take
>> > a look at the problem reporting section on the Cygwin web page. This list
>> > would need more information to help further.
>> >
>> Doing the above does allow a local user to public key authenticate :-) but
>> when I try to do the same thing with a domain user public key still fails but
>> what is interesting is when I try to set the acl's for the .ssh directory to
>> be the same as the local users the setfacl command fails with a error message
>> setfacl function not implemented.  I notice that this message comes up when
>> the ssh-user-config command is run for the first time.
>>
>> Is this error message occuring because the domain users home directory is
>> mapped to a unc (which in this case is //machine/grudd) instead of a path
>> name in the form of "/home/grudd"
>
>Most likely.  Add "smbntsec" to your CYGWIN environment variable.  Also,
>you can hide the fact that it's on a remote machine by using "mount -s
>//machine/grudd /home/grudd".
>HTH,
>    Igor
>


But (anticipating the next question) the domain user won't be able to see
your share through ssh and pubkey authentication unless it doesn't require 
Windows authentication to access it (i.e. it's accessible by "Everyone").


--
Larry Hall                              http://www.rfk.com
RFK Partners, Inc.                      (508) 893-9779 - RFK Office
838 Washington Street                   (508) 893-9889 - FAX
Holliston, MA 01746                     


--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Problem reports:       http://cygwin.com/problems.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019