From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (qmail 59356 invoked by alias); 24 Jan 2019 13:28:35 -0000 Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm Precedence: bulk List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner@cygwin.com Mail-Followup-To: cygwin@cygwin.com Received: (qmail 59345 invoked by uid 89); 24 Jan 2019 13:28:34 -0000 Authentication-Results: sourceware.org; auth=none X-Spam-SWARE-Status: No, score=-2.6 required=5.0 tests=BAYES_00,FREEMAIL_FROM,HTML_MESSAGE,RCVD_IN_DNSWL_LOW,SPF_PASS autolearn=ham version=3.3.2 spammy=logon, H*c:alternative X-HELO: mout.gmx.com Received: from mout.gmx.com (HELO mout.gmx.com) (74.208.4.200) by sourceware.org (qpsmtpd/0.93/v0.84-503-g423c35a) with ESMTP; Thu, 24 Jan 2019 13:28:33 +0000 X-UI-Sender-Class: 214d933f-fd2f-45c7-a636-f5d79ae31a79 Received: from mail-lj1-f170.google.com ([209.85.208.170]) by mail.gmx.com (mrgmxus001 [74.208.5.15]) with ESMTPSA (Nemesis) id 0Lyn4r-1hIi7f12Od-0168VV for ; Thu, 24 Jan 2019 14:28:28 +0100 Received: by mail-lj1-f170.google.com with SMTP id t18-v6so5228765ljd.4 for ; Thu, 24 Jan 2019 05:28:27 -0800 (PST) MIME-Version: 1.0 From: Bill Stewart Date: Thu, 24 Jan 2019 13:28:00 -0000 Message-ID: Subject: sshd permits logon using disabled user? To: cygwin@cygwin.com Content-Type: text/plain; charset="UTF-8" X-SW-Source: 2019-01/txt/msg00197.txt.bz2 I am running Windows 10 (1803) and experimenting with sshd installed as a Windows service. The computer is a domain member. I created a local computer account for testing. I created host keys and a public/private key pair to use to log on the user. This works, except I notice that if I disable the Windows user account, I can still log on using ssh using that account. In the shell, logged on as the disabled user, the 'whoami' command returns the name of the disabled user. This seems unexpected and not good. Why does sshd allow logon for a disabled user? Thanks Bill -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple