delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2014/09/02/11:38:25

X-Recipient: archive-cygwin AT delorie DOT com
DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:date:from:to:subject:message-id:reply-to
:references:mime-version:content-type:in-reply-to; q=dns; s=
default; b=SuVNbVUcgkG+iVfHkWNO5sdSsoYfOv6PCCCrpBzdW4MUeVTJAfPmB
6clpQCd/KWCcVN7BLIe+cPjmIK0S7HJcLy6DFA0Wl43TK0Ojv15xNlagJZRikelU
22MteM+SOlN9RLFXLGalx7JmyIcVC8LHMTuZ95fil+jNCym702ihyY=
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:date:from:to:subject:message-id:reply-to
:references:mime-version:content-type:in-reply-to; s=default;
bh=am/2z6QDtTfyqjqztV4OjC07jaQ=; b=fdCQGX/CqVpOzJqKPxnuP0prP1VK
owlEvK9ImA8c/3NIbQcr99lotvYBx2Qp/bSub8wY+draXJ5dOtB5nnNye2xjKSkb
g7zdVXIcaA0U1dl3FWTtVjlMgmvJIyWB1xXIo1YkPyON0ZvZb24taM7xQbpPv/ua
K1axbYpEYtv4RQw=
Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com
Authentication-Results: sourceware.org; auth=none
X-Virus-Found: No
X-Spam-SWARE-Status: No, score=-5.9 required=5.0 tests=AWL,BAYES_00 autolearn=ham version=3.3.2
X-HELO: calimero.vinschen.de
Date: Tue, 2 Sep 2014 17:37:57 +0200
From: Corinna Vinschen <corinna-cygwin AT cygwin DOT com>
To: cygwin AT cygwin DOT com
Subject: Re: Windows Server 2012R2 64bit and 32bit Cygwin sshd
Message-ID: <20140902153757.GE6056@calimero.vinschen.de>
Reply-To: cygwin AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
References: <8761hphfps DOT fsf AT Rainer DOT invalid> <loom DOT 20140902T134545-288 AT post DOT gmane DOT org> <20140902140751 DOT GD6056 AT calimero DOT vinschen DOT de> <loom DOT 20140902T171114-72 AT post DOT gmane DOT org>
MIME-Version: 1.0
In-Reply-To: <loom.20140902T171114-72@post.gmane.org>
User-Agent: Mutt/1.5.23 (2014-03-12)

--vmttodhTwj0NAgWp
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Sep  2 15:16, Achim Gratz wrote:
> Corinna Vinschen <corinna-cygwin <at> cygwin.com> writes:
> > I have no idea what could be wrong in your environment, sorry.
>=20
> Me neither.  I've set all three Cygwin environments up exactly the same w=
ay,
> using identical users and command lines (just different service names,
> obviously).
>=20
> I still have to use a local cyg_server account and a local sshd account, =
the
> latter of which gets mapped from MACHINE+sshd to plain sshd via /etc/pass=
wd
> to get sshd to start.

Don't use privilege separation, then the non-privileged sshd user won't
matter at all.  Privsep on Cygwin is only half-useful on Cygwin anyway,
if at all.  As for the local cyg_server account, I'm not sure.  Usually,
a local machine account has no or only limited access to AD information.
As an account which needs AD to get user information it's a bit
unfortunate if it doesn't have access.

>   Did the strace I sent you give any clue (I can make
> one again if that helps) because it seems that everything just works out =
as
> it should until the fork that should start the command given to ssh.

The strace shows that it doesn't even *try* to start bash, but it's
entirely unclear why.


Corinna

--=20
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Maintainer                 cygwin AT cygwin DOT com
Red Hat

--vmttodhTwj0NAgWp
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=9zyp
-----END PGP SIGNATURE-----

--vmttodhTwj0NAgWp--

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019