X-Recipient: archive-cygwin@delorie.com
DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id
	:list-unsubscribe:list-subscribe:list-archive:list-post
	:list-help:sender:date:from:to:subject:message-id:reply-to
	:references:mime-version:content-type:in-reply-to; q=dns; s=
	default; b=oOnzmy7KdejcajW1Z2FjlhyaZRUdOgjc9aODoHL7wUBq0nFdrJq8F
	O8gP8zYFAwkdGnr8rJtc2lOX0chd+FCkf4i3OHo3nWz6OTdg4qjfwCfbKXmdxoVD
	5LydmOkeEoMlI6icoTexThyZrlN3ySOqUpYtM+fTGZpz+awLWt/bWQ=
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id
	:list-unsubscribe:list-subscribe:list-archive:list-post
	:list-help:sender:date:from:to:subject:message-id:reply-to
	:references:mime-version:content-type:in-reply-to; s=default;
	 bh=3FxnH4Sf+EvRn29H09Hy/up8P7I=; b=erqHleStV82rnqk+aIIuE/EbMrnw
	SowzthzpyhGVglGsh/Et6EpoI9Wl3fgiRjVy19rQENHUlFe/saWPwCFlBWKjzRBY
	sM4d82OQQY+jQ6e6Pp7pSNEbyhElj5dndV1tqKXOmY5EaZ/uQ7siJk72L/MWkyTR
	EKg4GjMLOzHwhsI=
Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe@cygwin.com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin@cygwin.com>
List-Help: <mailto:cygwin-help@cygwin.com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
Delivered-To: mailing list cygwin@cygwin.com
Authentication-Results: sourceware.org; auth=none
X-Virus-Found: No
X-Spam-SWARE-Status: No, score=-4.1 required=5.0 tests=AWL,BAYES_50,KAM_LAZY_DOMAIN_SECURITY autolearn=no version=3.3.2
X-HELO: calimero.vinschen.de
Date: Mon, 8 Jun 2015 14:44:14 +0200
From: Corinna Vinschen <corinna-cygwin@cygwin.com>
To: cygwin@cygwin.com
Subject: Re: can't change a file's permissions  + some ssh
Message-ID: <20150608124414.GF3005@calimero.vinschen.de>
Reply-To: cygwin@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
References: <2110086719.10597039.1433699213769.JavaMail.yahoo@mail.yahoo.com>
MIME-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha256;	protocol="application/pgp-signature"; boundary="l+goss899txtYvYf"
Content-Disposition: inline
In-Reply-To: <2110086719.10597039.1433699213769.JavaMail.yahoo@mail.yahoo.com>
User-Agent: Mutt/1.5.23 (2014-03-12)

--l+goss899txtYvYf
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Jun  7 17:46, Marilo wrote:
> after some fiddling with ssh.. removing the service, removing keys, re-ru=
nning ssh-host-config, I got this error=20
>=20
> harvey@samsung350 ~=20
> $ tail /var/log/sshd.log=20
> @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@=20
> @         WARNING: UNPROTECTED PRIVATE KEY FILE!          @=20
> @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@=20
> Permissions 0670 for '/etc/ssh_host_ed25519_key' are too open.=20
> It is required that your private key files are NOT accessible by others.=
=20
> This private key will be ignored.=20
> bad permissions: ignore key: /etc/ssh_host_ed25519_key=20
> Could not load host key: /etc/ssh_host_ed25519_key=20
> Disabling protocol version 2. Could not load host key=20
> sshd: no hostkeys available -- exiting.
>=20
>=20
> So I tried changing the file's permissions but I can't seem to change them
>=20
> harvey@samsung350 ~=20
> $ ls -l /etc/ssh_host_ed25519_key=20
> -rw-rwx---+ 1 cyg_server root 411 Jun  7 17:23 /etc/ssh_host_ed25519_key=
=20
>=20
> harvey@samsung350 ~=20
> $ chmod 600 /etc/ssh_*=20
>=20
> harvey@samsung350 ~=20
> $ ls -l /etc/ssh_host_ed25519_key=20
> -rw-rwx---+ 1 cyg_server root 411 Jun  7 17:23 /etc/ssh_host_ed25519_key=
=20

Note the extra permissions indicated by the trailing '+'.  Try
`setfacl -b /etc/ssh_host_ed25519_key'.


Corinna

--=20
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Maintainer                 cygwin AT cygwin DOT com
Red Hat

--l+goss899txtYvYf
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=cOX7
-----END PGP SIGNATURE-----

--l+goss899txtYvYf--
