Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm
List-Subscribe: <mailto:cygwin-subscribe@cygwin.com>
List-Archive: <http://sources.redhat.com/ml/cygwin/>
List-Post: <mailto:cygwin@cygwin.com>
List-Help: <mailto:cygwin-help@cygwin.com>, <http://sources.redhat.com/ml/#faqs>
Sender: cygwin-owner@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
Delivered-To: mailing list cygwin@cygwin.com
Date: Mon, 11 Nov 2002 17:53:26 +0100
From: Corinna Vinschen <corinna-cygwin@cygwin.com>
To: cygwin@cygwin.com
Subject: Re: Is RSA authentication on SSH still broken?
Message-ID: <20021111175326.Y10395@cygbert.vinschen.de>
Reply-To: cygwin@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
References: <BADF3C947A1BD54FBA75C70C241B0B9E90B9D0@ex02.idirect.net>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <BADF3C947A1BD54FBA75C70C241B0B9E90B9D0@ex02.idirect.net>
User-Agent: Mutt/1.3.22.1i

On Mon, Nov 11, 2002 at 10:57:22AM -0500, Harig, Mark A. wrote:
> > Harig, Mark A. <maharig@idirect.net> wrote:
> I have been using option 1.  My question comes from the fact
> that Corinna Vinschen recommended that ~/.ssh be set to 700
> (which is what 'set-keygen' sets it to) and that she had
> pointed to my 'chmod 700 ~' as the reason that openssh would
> not work if I set ~/.ssh to 700.
> 
> Is there a consensus about what to recommend to Cygwin users,

It's a matter of taste.  Personally I let it 755 on ~ and 700
on ~/.ssh.  As long as sshd works, it's fine.  No worries.

> or does openssh work for some people with both ~ and ~/.ssh
> set to 700?

It can't, except there is that additional ACE for SYSTEM in the
~/.ssh ACL.

Corinna

-- 
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Developer                                mailto:cygwin@cygwin.com
Red Hat, Inc.

--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Bug reporting:         http://cygwin.com/bugs.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/

