From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (qmail 96705 invoked by alias); 19 Jul 2018 04:34:53 -0000 Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm Precedence: bulk List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner@cygwin.com Mail-Followup-To: cygwin@cygwin.com Received: (qmail 96691 invoked by uid 89); 19 Jul 2018 04:34:52 -0000 Authentication-Results: sourceware.org; auth=none X-Spam-SWARE-Status: No, score=-0.3 required=5.0 tests=AWL,BAYES_00,FREEMAIL_ENVFROM_END_DIGIT,FREEMAIL_FROM,HTML_MESSAGE,KAM_NUMSUBJECT,RCVD_IN_DNSWL_NONE,SPF_PASS autolearn=no version=3.3.2 spammy=Cliff, H*c:alternative, agent, services X-HELO: mail-oi0-f52.google.com Received: from mail-oi0-f52.google.com (HELO mail-oi0-f52.google.com) (209.85.218.52) by sourceware.org (qpsmtpd/0.93/v0.84-503-g423c35a) with ESMTP; Thu, 19 Jul 2018 04:34:50 +0000 Received: by mail-oi0-f52.google.com with SMTP id d189-v6so13072996oib.6 for ; Wed, 18 Jul 2018 21:34:49 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to; bh=QVEPbcf74XatEJOZlhfx35fVrMN6jiLOeh1PMHDrcZ4=; b=DSUVwMFlw6LabgWuSdy6O3Bd8qkNSInwnD/gVIEN1YmElFjLplSEOsUwO+CDUZHrW7 OdwCq4mDBr82UM7c3Wl5U9ChtBhYmxL83bUp/EUsOhqXyA0gG4Mv4EEnQjEJwL+i89aN eVCrg99wrtgT4T9uwJOwwmsnXuwuDHmaPo2jYM7d2B9EigjrJ86CvLr7fI284WBFjaC/ ITk6KKH1WDL7Cu7cOtRbUOT7yiJH6YOA//FBurv/Q6rr4Av9lfcc8BtDrgWzOWAzf2Fq rpMEE3JeMlAj93kyyHN0vR1Im5o2fl9XNnNCcQcoJa8EgRXyAS2YpplHuCgeXWDT3q/I WbOQ== MIME-Version: 1.0 Received: by 2002:a9d:20a7:0:0:0:0:0 with HTTP; Wed, 18 Jul 2018 21:34:47 -0700 (PDT) In-Reply-To: <5b4fd2ad.1c69fb81.3e7e4.c9cdSMTPIN_ADDED_MISSING@mx.google.com> References: <5b4fd2ad.1c69fb81.3e7e4.c9cdSMTPIN_ADDED_MISSING@mx.google.com> From: madhu gupta Date: Thu, 19 Jul 2018 15:09:00 -0000 Message-ID: Subject: Re: sshd service removed by Windows 10 update 1803 To: cygwin@cygwin.com Content-Type: text/plain; charset="UTF-8" X-IsSubscribed: yes X-SW-Source: 2018-07/txt/msg00175.txt.bz2 Thanks. On Thu, Jul 19, 2018 at 5:51 AM, Cliff Geschke < cliff.geschke@preciseautomation.com> wrote: > As part of a Windows 10 update 1803 a few days ago, the cygwin sshd > service was > removed, keeping my users from accessing my server. I had been > successfully > using sshd for several years and it has survived numerous windows updates. > > Here is what I have done to fix it: > > Disable the following services via W10 computer management. > OpenSSH Authentication Agent > SSH Server Broker > SSH Server Proxy > SSHdBroker > > I'm not sure all those need to be disabled. > > Run a bash shell as administrator, and reinstall sshd using cygrunsrv > > cygrunsrv --stop sshd > cygrunsrv --remove sshd > cygrunsrv --install sshd --path /usr/sbin/sshd.exe --user cyg_server > cygrunsrv --start sshd > > You will get an error from the start command: > cygrunsrv: Error starting a service: QueryServiceStatus: Win32 error > 1062: > The service has not been started. > > The task manager shows sshd is indeed running, and remote ssh clients can > log > in. So I am ignoring the error. > > cygrunsrv -Q sshd shows the service is stopped. And W10 computer > management > shows it is stopped. If you try to start it again, it will fail because > the > sshd task has a hold on the TCP ports. If you want to stop/restart to edit > config files, you need to directly kill the sshd task. > > After a system restart, W10 starts the correct sshd again. > > Simply using "cygrunsrv --install sshd" without --path, installs the MS > sshd. > Not what I want. > > If you don't specify --user with the --install, W10 will use SYSTEM which > does > not have the permissions (SeTcbPrivilege etc) to change to the client > user. So > you get seteuid Operation Not Permitted errors when a remote client tries > and > fails to login. I discovered this the hard way. > > BTW, I didn't want to start over with ssh-host-config because I didn't > want to > risk invalidating my encryption keys and confuse my remote clients. > > Except for the weirdness where computer management and cygrunsrv -Q show > the > service is stopped, everything seems to work okay and my users are happy > again. > > Cliff Geschke > Precise Automation > > > > -- > Problem reports: http://cygwin.com/problems.html > FAQ: http://cygwin.com/faq/ > Documentation: http://cygwin.com/docs.html > Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple > > -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple