X-Recipient: archive-cygwin AT delorie DOT com DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; q=dns; s= default; b=oOnzmy7KdejcajW1Z2FjlhyaZRUdOgjc9aODoHL7wUBq0nFdrJq8F O8gP8zYFAwkdGnr8rJtc2lOX0chd+FCkf4i3OHo3nWz6OTdg4qjfwCfbKXmdxoVD 5LydmOkeEoMlI6icoTexThyZrlN3ySOqUpYtM+fTGZpz+awLWt/bWQ= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; s=default; bh=3FxnH4Sf+EvRn29H09Hy/up8P7I=; b=erqHleStV82rnqk+aIIuE/EbMrnw SowzthzpyhGVglGsh/Et6EpoI9Wl3fgiRjVy19rQENHUlFe/saWPwCFlBWKjzRBY sM4d82OQQY+jQ6e6Pp7pSNEbyhElj5dndV1tqKXOmY5EaZ/uQ7siJk72L/MWkyTR EKg4GjMLOzHwhsI= Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Authentication-Results: sourceware.org; auth=none X-Virus-Found: No X-Spam-SWARE-Status: No, score=-4.1 required=5.0 tests=AWL,BAYES_50,KAM_LAZY_DOMAIN_SECURITY autolearn=no version=3.3.2 X-HELO: calimero.vinschen.de Date: Mon, 8 Jun 2015 14:44:14 +0200 From: Corinna Vinschen To: cygwin AT cygwin DOT com Subject: Re: can't change a file's permissions + some ssh Message-ID: <20150608124414.GF3005@calimero.vinschen.de> Reply-To: cygwin AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com References: <2110086719 DOT 10597039 DOT 1433699213769 DOT JavaMail DOT yahoo AT mail DOT yahoo DOT com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="l+goss899txtYvYf" Content-Disposition: inline In-Reply-To: <2110086719.10597039.1433699213769.JavaMail.yahoo@mail.yahoo.com> User-Agent: Mutt/1.5.23 (2014-03-12) --l+goss899txtYvYf Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Jun 7 17:46, Marilo wrote: > after some fiddling with ssh.. removing the service, removing keys, re-ru= nning ssh-host-config, I got this error=20 >=20 > harvey AT samsung350 ~=20 > $ tail /var/log/sshd.log=20 > @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@=20 > @ WARNING: UNPROTECTED PRIVATE KEY FILE! @=20 > @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@=20 > Permissions 0670 for '/etc/ssh_host_ed25519_key' are too open.=20 > It is required that your private key files are NOT accessible by others.= =20 > This private key will be ignored.=20 > bad permissions: ignore key: /etc/ssh_host_ed25519_key=20 > Could not load host key: /etc/ssh_host_ed25519_key=20 > Disabling protocol version 2. Could not load host key=20 > sshd: no hostkeys available -- exiting. >=20 >=20 > So I tried changing the file's permissions but I can't seem to change them >=20 > harvey AT samsung350 ~=20 > $ ls -l /etc/ssh_host_ed25519_key=20 > -rw-rwx---+ 1 cyg_server root 411 Jun 7 17:23 /etc/ssh_host_ed25519_key= =20 >=20 > harvey AT samsung350 ~=20 > $ chmod 600 /etc/ssh_*=20 >=20 > harvey AT samsung350 ~=20 > $ ls -l /etc/ssh_host_ed25519_key=20 > -rw-rwx---+ 1 cyg_server root 411 Jun 7 17:23 /etc/ssh_host_ed25519_key= =20 Note the extra permissions indicated by the trailing '+'. Try `setfacl -b /etc/ssh_host_ed25519_key'. Corinna --=20 Corinna Vinschen Please, send mails regarding Cygwin to Cygwin Maintainer cygwin AT cygwin DOT com Red Hat --l+goss899txtYvYf Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBCAAGBQJVdY4eAAoJEPU2Bp2uRE+gFoUP/i5WPh8FLt6lpNXIMTgDUq1F Sms0/+4NlpddP19jYKGw92c8EyazPRdB7Uj/m5+i816UyJ2VZrIX4uzY20kmc++j CKq+UZVKXcwPHt2nucbMMVbV5MlYrtHh5d0ExJUWF+SHSsLkv/Jr9g0RyTXkgK7y dv9gPgJnqc6PiBOvBy3hZM7GT83cHlrRTu1BtxYtggvqRERofyvXwwCda5LXbx3p CbtJCH5+ToTllT92p8R8owppOX3hZ6pydT7axjckFbtHdst0uM/BR6JEFaIDUUPh sBaF1qiGB+Zi5VYmH3HsfsnjmVgoAyGyWhkB/Vg5OHcnrNuMs0oEsCfK6eTtP+k+ nUX8n3PKuKxlvW7nr6WMgBZrUezjreA/Sailwb0w+GjSQcRAR8tsMWWFizTJ9iUp W1H/PH9QMUQb7F1JbdRYF35EgVa76IJrpjuAqhnWeE9qREnpLb3J1bs+cICu+QsR mjsCWK8CIvSzknlhZihXOsW4HNf8j5zd3IZp8SHP+v0vPjXFpttQvPl4GQw5V3TT wlUClom/kRgjPPSuphIDOjdUbZxuFGjwL4BBna55fdZpeqU9+fLjmlKJICSf2pOT NpxUsJDvDre2dxTkzMjUTsKVHlciGRLg8FmXEYwA8mjk9qr5RSQCWlsy5S5zxcWZ dTZileLOlspvOzGv/x4O =cOX7 -----END PGP SIGNATURE----- --l+goss899txtYvYf--