RE: Using Key Pairs on OpenSSH on Win2k3
"Welsh, Armand" <[email protected]> Wed, 28 May 2008 14:33:24 -0700
| Newsgroups | gmane.network.ssh.windows |
|---|---|
| Message-ID | <078F02AD7EC1DF4FA30DC587C548679A01426DE1@INE000PB.IMSWEST.SSCIMS.com> |
This is a multi-part message in MIME format. ------_=_NextPart_001_01C8C10A.75309140 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable I don't think the copSSH and the https based activities are related. Regarding the connection to the other server (via https), how is this connection established? I need more information to understand the issue. Are you connecting (via ssh) to the server, and then on the server using wget or other command line util to get something from a web server? If you are using an SSH tunnel to connect to the https server using the ssh server as a middle point then I would need to know what client libraries on your client computer are used to establish the https session. =20 Armand ________________________________ From: [email protected] [mailto:[email protected]] On Behalf Of Robert Denton Sent: Wednesday, May 28, 2008 12:49 PM To: [email protected] Subject: Re: Using Key Pairs on OpenSSH on Win2k3 So I took your advice and installed CopSSH instead and it is working as desired, with one minor snag. First, the application I am using this for is to connect to the copssh server and run some commands. One of the commands involves connection to a different server via https. When I do this I get prompted to accept the certificate. Choosing 'p' for permanent has no effect. Advice I have gotten from other forums is that I need to download Comodo's Trusted Root Certificate and append it to the end of the ca-bundle.crt that is used by OpenSSH. Unfortunately a search of the system yields no such file. Where does CopSSH place this file? And do you agree that this is the recommended course of action? Robert ________________________________ From: Welsh, Armand [mailto:[email protected]] To: [email protected] Sent: Thu, 22 May 2008 09:17:19 -0700 Subject: Re: Using Key Pairs on OpenSSH on Win2k3 =09 Robert, =09 Before I look into potential causes, the first I would like to know is: are you using copSSH, the Cygwin installation with the openSSH package installed, or the "openSSH for Windows" project from source forge? =09 Why do I ask? Al three are openSSH from the cygwin project the following conditions: Cygwin is the thick install proding the option to turn you windows box into a GNU Linux like operating system (via the bash or other shell and some special mappers built into cygwin). The cygwin project installs a basic configuration of openSSH which works well on older windows systems, but requires specific things be done to get the SSH server to work 100% on windows 2003 and Vista. =09 CopSSH is a pre-packaged minimal installation of Cygwin with a couple minor enhancement patches that installs Cygwin, openSSH, configures you computer (even vista and win2k3) so that openSSH works without any tweaking at all. =09 "OpenSSH for Windows" is a dead sourceforge project that is almost identical to copSSH, except that development on the project has stopped a long time ago, and this package requires more tweaking of the ssh settings and the server that the other options, and is running very old ssh code that should not be used anymore in my opinion. =09 If you want the easy solution, install copSSH and everything will work. If you want to get what you have working and you did not install copSSH then we can offer assistance with making all the appropriate changes, but it will take more time to get SSH services up and running with public keys, but you will have the option of using any piece of the cygwin project easily. =09 Armand =09 =09 ------_=_NextPart_001_01C8C10A.75309140 Content-Type: text/html; charset="us-ascii" Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <HTML><HEAD> <META http-equiv=3DContent-Type content=3D"text/html; = charset=3Dus-ascii"> <STYLE>BODY { FONT: 10pt Tahoma, Verdana, sans-serif } </STYLE> <META content=3D"MSHTML 6.00.6000.16640" name=3DGENERATOR></HEAD> <BODY> <DIV dir=3Dltr align=3Dleft><SPAN class=3D758572821-28052008>I don't = think the copSSH=20 and the https based activities are related. Regarding the = connection to=20 the other server (via https), how is this connection established? = I need=20 more information to understand the issue. Are you connecting (via = ssh) to=20 the server, and then on the server using wget or other command line util = to get=20 something from a web server? If you are using an SSH tunnel to = connect to=20 the https server using the ssh server as a middle point then I would = need to=20 know what client libraries on your client computer are used to establish = the=20 https session.</SPAN></DIV> <DIV dir=3Dltr align=3Dleft><SPAN = class=3D758572821-28052008></SPAN> </DIV> <DIV dir=3Dltr align=3Dleft><SPAN = class=3D758572821-28052008>Armand</SPAN></DIV><BR> <DIV class=3DOutlookMessageHeader lang=3Den-us dir=3Dltr align=3Dleft> <HR tabIndex=3D-1> <B>From:</B> [email protected] [mailto:[email protected]] <B>On Behalf = Of=20 </B>Robert Denton<BR><B>Sent:</B> Wednesday, May 28, 2008 12:49 = PM<BR><B>To:</B>=20 [email protected]<BR><B>Subject:</B> Re: Using Key Pairs on OpenSSH on=20 Win2k3<BR><BR></DIV> <DIV></DIV>So I took your advice and installed CopSSH instead and it is = working=20 as desired, with one minor snag. First, the application I am using = this=20 for is to connect to the copssh server and run some commands. One = of the=20 commands involves connection to a different server via https. When = I do=20 this I get prompted to accept the certificate. Choosing 'p' for = permanent=20 has no effect.<BR><BR>Advice I have gotten from other forums is that I = need to=20 download Comodo's <SPAN=20 style=3D"MARGIN-TOP: 0px; FONT: 90% monospace; font-size-adjust: none; = font-stretch: normal">Trusted=20 Root Certificate and append it to the end of the ca-bundle.crt that is = used by=20 OpenSSH. Unfortunately a search of the system yields no such = file. =20 Where does CopSSH place this file? And do you agree that this is = the=20 recommended course of action?</SPAN><BR><BR>Robert<BR> <BLOCKQUOTE=20 style=3D"PADDING-LEFT: 5px; MARGIN-LEFT: 5px; BORDER-LEFT: rgb(0,0,255) = 2px solid; MARGIN-RIGHT: 0px"> <HR> <B>From:</B> Welsh, Armand = [mailto:[email protected]]<BR><B>To:</B>=20 [email protected]<BR><B>Sent:</B> Thu, 22 May 2008 09:17:19=20 -0700<BR><B>Subject:</B> Re: Using Key Pairs on OpenSSH on=20 Win2k3<BR><BR>Robert,<BR><BR>Before I look into potential causes, the = first I=20 would like to know is: are you using copSSH, the Cygwin installation = with the=20 openSSH package installed, or the "openSSH for Windows" project from = source=20 forge?<BR><BR>Why do I ask? Al three are openSSH from the cygwin = project the=20 following conditions:<BR>Cygwin is the thick install proding the = option to=20 turn you windows box into a GNU Linux like operating system (via the = bash or=20 other shell and some special mappers built into cygwin). The cygwin = project=20 installs a basic configuration of openSSH which works well on older = windows=20 systems, but requires specific things be done to get the SSH server to = work=20 100% on windows 2003 and Vista.<BR><BR>CopSSH is a pre-packaged = minimal=20 installation of Cygwin with a couple minor enhancement patches that = installs=20 Cygwin, openSSH, configures you computer (even vista and win2k3) so = that=20 openSSH works without any tweaking at all.<BR><BR>"OpenSSH for = Windows" is a=20 dead sourceforge project that is almost identical to copSSH, except = that=20 development on the project has stopped a long time ago, and this = package=20 requires more tweaking of the ssh settings and the server that the = other=20 options, and is running very old ssh code that should not be used = anymore in=20 my opinion.<BR><BR>If you want the easy solution, install copSSH and=20 everything will work. If you want to get what you have working and you = did not=20 install copSSH then we can offer assistance with making all the = appropriate=20 changes, but it will take more time to get SSH services up and running = with=20 public keys, but you will have the option of using any piece of the = cygwin=20 project easily.<BR><BR>Armand<BR><BR></BLOCKQUOTE> <STYLE> </STYLE> </BODY></HTML> ------_=_NextPart_001_01C8C10A.75309140-- -- List Info: http://erdelynet.com/ssh-l/ List Archives: http://erdelynet.com/archive/ssh-l/ To Unsubscribe: Mail mailto:[email protected] If you are having trouble unsubscribing, visit the List Info page for help.