RE: Using Key Pairs on OpenSSH on Win2k3

"Robert Denton" <[email protected]> Thu, 29 May 2008 13:36:35 -0700
Newsgroups gmane.network.ssh.windows
Organization Headsprout
Message-ID <[email protected]>
This is a multi-part message in MIME format.

-------------e0891fd948f58d8b631df74352569846
Content-Type: text/plain;
	charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

The path issue is still a mystery to me as I have modified the path ever=
y which way and it still does not work.  On the upside, this issue is no=
t critical to what I need to do since all I really need is to be able to=
 do is from a command prompt, "accept" an ssl cert.  So what I have done=
 is navigated to the subversion bin dir and issued this:

./svn.exe co https://...

Which finally does indeed work. The problem I am seeing now is that I ge=
t prompted to accept an "untrusted" cert.  After pressing 'p' for perman=
ent, the process seems to just stop.  Normally it continues on and acces=
ses the page you requested in the first place.  The other problem I have=
 with this is that the cert should not be untrusted. It is a Comodo cert=
 that browsers (for example) do not have a problem with.

Robert=20
  =5F=5F=5F=5F=5F =20

From: Welsh, Armand [mailto:[email protected]]
To: [email protected]
Sent: Thu, 29 May 2008 11:18:45 -0700
Subject: RE: Using Key Pairs on OpenSSH on Win2k3

             =20
command not found is a   path issue.  I am not familliar with Subversion=
, we user PVCS in our shop,   but if you suspect the patch, use the set =
command from the shell to see what the   current path is set to.. just t=
ype in "set" and all the variables will be   returned.  locate the path,=
 to confirm it is set correctly.  As a side   note, I don't believe you =
need to escape the space in program files,   try: =20
  =20
export   PATH=3D"/cygdrive/c/Profile files/Subversion/bin:$PATH" =20
  =20
or =20
 =20
  =20
export   PATH=3D"$PATH:/cygdrive/c/Profile files/Subversion/bin" =20
  =20
=20
 =20
    =5F=5F=5F=5F=5F =20

  From: [email protected] [mailto:[email protected]] On Behalf Of   Robe=
rt Denton
Sent: Thursday, May 29, 2008 9:26 AM
To:   [email protected]
Subject: RE: Using Key Pairs on OpenSSH on   Win2k3

 =20
Hi there.  This continues to baffle.  I have edited the   profile file a=
s you have recommended, as well as issued the more   correct:

PATH=3D"$PATH:/cygdrive/c/Program\   Files/Subversion/Subversion/bin"

but I still   get:

admin@development ~
$ svn
-bash: svn: command not   found

I even added a shortcut to svn.exe in windows/system32.  All   to no ava=
il.  If this is not a path issue what else could it be=3F  If   it were =
a permissions problem I do not think I'd be getting the command not   fo=
und error.


Robert=20
        =5F=5F=5F=5F=5F =20

    From: Welsh, Armand [mailto:[email protected]]
To:     [email protected]
Sent: Wed, 28 May 2008 16:42:11     -0700
Subject: RE: Using Key Pairs on OpenSSH on Win2k3

   =20
okay, so once you SSH into     devserver, then you from within devserver=
 you are running the svnclient.         =20
    =20
Assuming you are using the     default configuration of copSSH, then you=
r bash path comes from:   =20
    =20
/etc/profile   =20
    =20
you can edit this file to     modify the EXPORT command if you wish to c=
hange the PATH.  My      default /etc/profile looks like this:         =
=20
    =20
$ cat /etc/profile         =20
# If you wish to change the path for all users, it is       recommended =
you edit
#  /etc/bash.bashrc     =20
      =20
syspath=3D`/bin/cygpath       -S`
winpath=3D`/bin/cygpath -W`
export       PATH=3D"/bin:$syspath:$winpath"
umask 027     =20
      =20
# Set a default prompt of: user@host and       current=5Fdirectory
PS1=3D'\[\033]0;\w\007
\033[32m\]\u@\h       \[\033[33m\w\033[0m\]
$ '
   =20
Since you're probably running     the default install, it should be the =
same.  Just ignore the     recomendation of editing /etc/bash.bashrc sin=
ce the file doesn't exist on a     default copSSH install, and editing t=
he export here works just as well for     such a simple installation.   =
=20
    =20
See if that resolve your path     issue.  I recommend you change it as f=
ollows:   =20
    =20
$ vi     /etc/profile         =20
# If you wish to change the path for all users, it is       recommended =
you edit
#  /etc/bash.bashrc     =20
      =20
syspath=3D`/bin/cygpath       -S`
winpath=3D`/bin/cygpath -W`
export       PATH=3D"/bin:$syspath:$winpath:cygdrive/c/Program\       Fi=
les/Subversion/bin"
umask 027     =20
      =20
# Set a default prompt of: user@host and       current=5Fdirectory
PS1=3D'\[\033]0;\w\007
\033[32m\]\u@\h       \[\033[33m\w\033[0m\]
$ '   =20
Also, I am not a bash pro, but     I believe the proper form of the bash=
 command for setting the path     is:   =20
PATH=3D"$PATH:/cygdrive/c/Program\     Files/Subversion/Subversion/bin" =
  =20
    =20
By specifying the $PATH=3D you     are actually causing the shell to thi=
nk you want to execute the contents of     $PATH, which is why you are r=
eceiving a No such file or directory upon the set     command (it's a sy=
ntax error issue).   =20
    =20
Regards,   =20
Armand   =20
    =20
    =20
      =5F=5F=5F=5F=5F =20

    From: [email protected]     [mailto:[email protected]] On Behalf    =
 Of Robert Denton
Sent: Wednesday, May 28, 2008 4:25     PM
To: [email protected]
Subject: RE:     Using Key Pairs on OpenSSH on Win2k3

   =20
Trying to append to the path seems to not work, also:

admin@development ~
$ $PATH =3D     $PATH:/cygdrive/c/Program\ Files/Subversion/bin/
-bash:     /bin:/cygdrive/c/WINDOWS/system32:/cygdrive/c/WINDOWS: No suc=
h file or     directory

This might be a key element in solving this problem. I say     this sinc=
e if I could actually issue the svn co command from a ssh session,     t=
hen I should (in theory) be able to select 'p' for permanent, and make t=
his     problem go away.

Robert=20
            =5F=5F=5F=5F=5F =20

      From: Robert Denton [mailto:[email protected]]
To:       [email protected]
Sent:       Wed, 28 May 2008 15:56:32 -0700
Subject: RE: Using Key Pairs on       OpenSSH on Win2k3

Okay, let me see if I can explain my set up a       little bit.  And you=
 might be right about there being no connection       between openssh an=
d the ssl used to connect to the https server, but here       goes:

user@svnserver       ---(ssh)---> admin@devserver       ---(https)---> s=
vnserver

Seems weird to do it that way, but in       order to maintain a  mirror =
of our code on the dev server we need to       issue an 'update' command=
 to the svn client on the dev server where we want       the mirror, and=
 this is triggered by a process on the svn server       itself.  The fir=
st part seems to be working with one weird       exception:

If I log onto the devserver and launch a command prompt,       the comma=
nd 'svn' is known by virtue of path. Oddly, if I ssh to that server     =
  as the same user, the command 'ssh' is not known. Does Cygwin (or Open=
SSH)       maintain it's own path variable=3F  If so, where is it       =
kept=3F

Robert=20
                =5F=5F=5F=5F=5F =20

        From: Welsh, Armand [mailto:[email protected]]
To:         [email protected]
Sent:         Wed, 28 May 2008 14:33:24 -0700
Subject: RE: Using Key Pairs on         OpenSSH on Win2k3

       =20
I don't think the copSSH         and the https based activities are rela=
ted.  Regarding the connection         to the other server (via https), =
how is this connection established=3F          I need more information t=
o understand the issue.  Are you connecting         (via ssh) to the ser=
ver, and then on the server using wget or other         command line uti=
l to get something from a web server=3F  If you are         using an SSH=
 tunnel to connect to the https server using the ssh server as         a=
 middle point then I would need to know what client libraries on your   =
      client computer are used to establish the https session.       =20
        =20
Armand
       =20
          =5F=5F=5F=5F=5F =20

        From: [email protected]         [mailto:[email protected]] On   =
      Behalf Of Robert Denton
Sent: Wednesday, May 28, 2008 12:49         PM
To: [email protected]
Subject:         Re: Using Key Pairs on OpenSSH on Win2k3

       =20
So I took your advice and installed CopSSH instead and it is         wor=
king as desired, with one minor snag.  First, the application I am      =
   using this for is to connect to the copssh server and run some       =
  commands.  One of the commands involves connection to a different     =
    server via https.  When I do this I get prompted to accept the      =
   certificate.  Choosing 'p' for permanent has no effect.

Advice         I have gotten from other forums is that I need to downloa=
d Comodo's Trusted         Root Certificate and append it to the end of =
the ca-bundle.crt that is         used by OpenSSH.  Unfortunately a sear=
ch of the system yields no such         file.  Where does CopSSH place t=
his file=3F  And do you agree that         this is the recommended cours=
e of action=3F

Robert
                    =5F=5F=5F=5F=5F =20

          From: Welsh, Armand [mailto:[email protected]]
To:           [email protected]
Sent:           Thu, 22 May 2008 09:17:19 -0700
Subject: Re: Using Key Pairs           on OpenSSH on Win2k3

Robert,

Before I look into potential           causes, the first I would like to=
 know is: are you using copSSH, the           Cygwin installation with t=
he openSSH package installed, or the "openSSH           for Windows" pro=
ject from source forge=3F

Why do I ask=3F Al three           are openSSH from the cygwin project t=
he following conditions:
Cygwin           is the thick install proding the option to turn you win=
dows box into a           GNU Linux like operating system (via the bash =
or other shell and some           special mappers built into cygwin). Th=
e cygwin project installs a basic           configuration of openSSH whi=
ch works well on older windows systems, but           requires specific =
things be done to get the SSH server to work 100% on           windows 2=
003 and Vista.

CopSSH is a pre-packaged minimal           installation of Cygwin with a=
 couple minor enhancement patches that           installs Cygwin, openSS=
H, configures you computer (even vista and           win2k3) so that ope=
nSSH works without any tweaking at           all.

"OpenSSH for Windows" is a dead sourceforge project that is           al=
most identical to copSSH, except that development on the project has    =
       stopped a long time ago, and this package requires more tweaking =
of the           ssh settings and the server that the other options, and=
 is running very           old ssh code that should not be used anymore =
in my opinion.

If           you want the easy solution, install copSSH and everything w=
ill work. If           you want to get what you have working and you did=
 not install copSSH           then we can offer assistance with making a=
ll the appropriate changes,           but it will take more time to get =
SSH services up and running with           public keys, but you will hav=
e the option of using any piece of the           cygwin project     easi=
ly.

Armand

       =20
-------------e0891fd948f58d8b631df74352569846
Content-Type: text/html;
	charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE html PUBLIC '-//W3C//DTD HTML 4.01 Transitional//EN'>
<html>
<head>
 <meta http-equiv=3D'Content-Type' content=3D'text/html;charset=3Dus-asc=
ii'>
 <style>BODY{font:10pt Tahoma, Verdana, sans-serif;}</style>
</head>
<body>
The path issue is still a mystery to me as I have modified the path ever=
y which way and it still does not work.&nbsp; On the upside, this issue =
is not critical to what I need to do since all I really need is to be ab=
le to do is from a command prompt, "accept" an ssl cert.&nbsp; So what I=
 have done is navigated to the subversion bin dir and issued this:<br><b=
r>./svn.exe co https://...<br><br>Which finally does indeed work. The pr=
oblem I am seeing now is that I get prompted to accept an "untrusted" ce=
rt.&nbsp; After pressing 'p' for permanent, the process seems to just st=
op.&nbsp; Normally it continues on and accesses the page you requested i=
n the first place.&nbsp; The other problem I have with this is that the =
cert should not be untrusted. It is a Comodo cert that browsers (for exa=
mple) do not have a problem with.<br><br>Robert <br><blockquote style=3D=
"border-left: 2px solid rgb(0, 0, 255); padding-left: 5px; margin-left: =
5px; margin-right: 0px;"><hr><b>From:</b> Welsh, Armand [mailto:Armand.W=
[email protected]]<br><b>To:</b> [email protected]<br><b>Sent:</b> Thu, 29=
 May 2008 11:18:45 -0700<br><b>Subject:</b> RE: Using Key Pairs on OpenS=
SH on Win2k3<br><br>






<div align=3D"left"><span class=3D"842181418-29052008">command not found=
 is a=20
path issue.&nbsp; I am not familliar with Subversion, we user PVCS in ou=
r shop,=20
but if you suspect the patch, use the set command from the shell to see =
what the=20
current path is set to.. just type in "set" and all the variables will b=
e=20
returned.&nbsp; locate the path, to confirm it is set correctly.&nbsp; A=
s a side=20
note, I don't believe you need to escape the space in program files,=20
try:</span></div>
<div align=3D"left"><span class=3D"842181418-29052008"></span>&nbsp;</di=
v>
<div align=3D"left"><span class=3D"842181418-29052008">export=20
PATH=3D"/cygdrive/c/Profile files/Subversion/bin:$PATH"</span></div>
<div align=3D"left"><span class=3D"842181418-29052008"></span>&nbsp;</di=
v>
<div align=3D"left"><span class=3D"842181418-29052008">or</span></div>
<div align=3D"left"><span class=3D"842181418-29052008">
<div align=3D"left"><span class=3D"842181418-29052008"></span>&nbsp;</di=
v>
<div align=3D"left"><span class=3D"842181418-29052008">export=20
PATH=3D"$PATH:/cygdrive/c/Profile files/Subversion/bin"</span></div></sp=
an></div>
<div align=3D"left"><span class=3D"842181418-29052008"></span>&nbsp;</di=
v>
<div align=3D"left"><span class=3D"842181418-29052008"></span>&nbsp;</di=
v><br>
<div class=3D"OutlookMessageHeader" align=3D"left">
<hr>
<b>From:</b> <a href=3D"mailto:[email protected]">[email protected]</a> =
[mailto:<a href=3D"mailto:[email protected]">[email protected]</a>] <b>O=
n Behalf Of=20
</b>Robert Denton<br><b>Sent:</b> Thursday, May 29, 2008 9:26 AM<br><b>T=
o:</b>=20
<a href=3D"mailto:[email protected]">[email protected]</a><br><b>Subject=
:</b> RE: Using Key Pairs on OpenSSH on=20
Win2k3<br><br></div>
<div></div>Hi there.&nbsp; This continues to baffle.&nbsp; I have edited=
 the=20
profile file as you have recommended, as well as issued the more=20
correct:<br><br><span class=3D"614182923-28052008">PATH=3D"$PATH:/cygdri=
ve/c/Program\=20
Files/Subversion/Subversion/bin"<br><br>but I still=20
get:<br><br><a href=3D"mailto:admin@development">admin@development</a> ~=
<br>$ svn<br>-bash: svn: command not=20
found<br><br>I even added a shortcut to svn.exe in windows/system32.&nbs=
p; All=20
to no avail.&nbsp; If this is not a path issue what else could it be=3F&=
nbsp; If=20
it were a permissions problem I do not think I'd be getting the command =
not=20
found error.<br><br></span><br>Robert <br>
<blockquote style=3D"border-left: 2px solid rgb(0, 0, 255); padding-left=
: 5px; margin-left: 5px; margin-right: 0px;">
  <hr>
  <b>From:</b> Welsh, Armand [mailto:<a href=3D"mailto:Armand.Welsh@ssci=
ms.com">[email protected]</a>]<br><b>To:</b>=20
  <a href=3D"mailto:[email protected]">[email protected]</a><br><b>Sent:=
</b> Wed, 28 May 2008 16:42:11=20
  -0700<br><b>Subject:</b> RE: Using Key Pairs on OpenSSH on Win2k3<br><=
br>
  <div align=3D"left"><span class=3D"614182923-28052008">okay, so once y=
ou SSH into=20
  devserver, then you from within devserver you are running the svnclien=
t.&nbsp;=20
  </span></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">Assuming you ar=
e using the=20
  default configuration of copSSH, then your bash path comes from:</span=
></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">/etc/profile</s=
pan></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">you can edit th=
is file to=20
  modify the EXPORT command if you wish to change the PATH.&nbsp; My&nbs=
p;=20
  default /etc/profile looks like this:</span></div>
  <blockquote style=3D"margin-right: 0px;">
    <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;=
</div></blockquote>
  <div align=3D"left"><span class=3D"614182923-28052008">$ cat /etc/prof=
ile</span></div>
  <blockquote style=3D"margin-right: 0px;"><span class=3D"614182923-2805=
2008">
    <div align=3D"left"># If you wish to change the path for all users, =
it is=20
    recommended you edit<br>#&nbsp; /etc/bash.bashrc</div>
    <div>&nbsp;</div>
    <div align=3D"left"><span class=3D"614182923-28052008">syspath=3D`/b=
in/cygpath=20
    -S`<br>winpath=3D`/bin/cygpath -W`<br>export=20
    PATH=3D"/bin:$syspath:$winpath"<br>umask 027</span></div>
    <div>&nbsp;</div>
    <div align=3D"left"><span class=3D"614182923-28052008"># Set a defau=
lt prompt of: <a href=3D"mailto:user@host">user@host</a> and=20
    current=5Fdirectory<br>PS1=3D'\[\033]0;\w\007<br>\033[32m\]\u@\h=20
    \[\033[33m\w\033[0m\]<br>$ '<br></span></div></span></blockquote>
  <div align=3D"left"><span class=3D"614182923-28052008">Since you're pr=
obably running=20
  the default install, it should be the same.&nbsp; Just ignore the=20
  recomendation of editing /etc/bash.bashrc since the file doesn't exist=
 on a=20
  default copSSH install, and editing the export here works just as well=
 for=20
  such a simple installation.</span></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">See if that res=
olve your path=20
  issue.&nbsp; I recommend you change it as follows:</span></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">$&nbsp;vi=20
  /etc/profile</span></div>
  <blockquote style=3D"margin-right: 0px;"><span class=3D"614182923-2805=
2008">
    <div align=3D"left"># If you wish to change the path for all users, =
it is=20
    recommended you edit<br>#&nbsp; /etc/bash.bashrc</div>
    <div>&nbsp;</div>
    <div align=3D"left"><span class=3D"614182923-28052008">syspath=3D`/b=
in/cygpath=20
    -S`<br>winpath=3D`/bin/cygpath -W`<br>export=20
    PATH=3D"/bin:$syspath:$winpath:cygdrive/c/Program\=20
    Files/Subversion/bin"<br>umask 027</span></div>
    <div>&nbsp;</div>
    <div align=3D"left"><span class=3D"614182923-28052008"># Set a defau=
lt prompt of: <a href=3D"mailto:user@host">user@host</a> and=20
    current=5Fdirectory<br>PS1=3D'\[\033]0;\w\007<br>\033[32m\]\u@\h=20
    \[\033[33m\w\033[0m\]<br>$ '</span><span class=3D"614182923-28052008=
"></span></div></span></blockquote>
  <div align=3D"left"><span class=3D"614182923-28052008">Also, I am not =
a bash pro, but=20
  I believe the proper form of the bash command for setting the path=20
  is:</span></div>
  <div align=3D"left"><span class=3D"614182923-28052008">PATH=3D"$PATH:/=
cygdrive/c/Program\=20
  Files/Subversion/Subversion/bin"</span></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">By specifying t=
he $PATH=3D you=20
  are actually causing the shell to think you want to execute the conten=
ts of=20
  $PATH, which is why you are receiving a No such file or directory upon=
 the set=20
  command (it's a syntax error issue).</span></div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008">Regards,</span>=
</div>
  <div align=3D"left"><span class=3D"614182923-28052008">Armand</span></=
div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div align=3D"left"><span class=3D"614182923-28052008"></span>&nbsp;</=
div>
  <div class=3D"OutlookMessageHeader" align=3D"left">
  <hr>
  <b>From:</b> <a href=3D"mailto:[email protected]">[email protected]</a=
>=20
  [mailto:<a href=3D"mailto:[email protected]">[email protected]</a>] <b=
>On Behalf=20
  Of </b>Robert Denton<br><b>Sent:</b> Wednesday, May 28, 2008 4:25=20
  PM<br><b>To:</b> <a href=3D"mailto:[email protected]">[email protected]=
m</a><br><b>Subject:</b> RE:=20
  Using Key Pairs on OpenSSH on Win2k3<br><br></div>
  <div></div>Trying to append to the path seems to not work, also:<br><b=
r><a href=3D"mailto:admin@development">admin@development</a> ~<br>$ $PAT=
H =3D=20
  $PATH:/cygdrive/c/Program\ Files/Subversion/bin/<br>-bash:=20
  /bin:/cygdrive/c/WINDOWS/system32:/cygdrive/c/WINDOWS: No such file or=
=20
  directory<br><br>This might be a key element in solving this problem. =
I say=20
  this since if I could actually issue the svn co command from a ssh ses=
sion,=20
  then I should (in theory) be able to select 'p' for permanent, and mak=
e this=20
  problem go away.<br><br>Robert <br>
  <blockquote style=3D"border-left: 2px solid rgb(0, 0, 255); padding-le=
ft: 5px; margin-left: 5px; margin-right: 0px;">
    <hr>
    <b>From:</b> Robert Denton [mailto:<a href=3D"mailto:robert@headspro=
ut.com">[email protected]</a>]<br><b>To:</b>=20
    <a href=3D"mailto:[email protected]">[email protected]</a><br><b>Sen=
t:</b>=20
    Wed, 28 May 2008 15:56:32 -0700<br><b>Subject:</b> RE: Using Key Pai=
rs on=20
    OpenSSH on Win2k3<br><br>Okay, let me see if I can explain my set up=
 a=20
    little bit.&nbsp; And you might be right about there being no connec=
tion=20
    between openssh and the ssl used to connect to the https server, but=
 here=20
    goes:<br><br><a href=3D"mailto:user@svnserver">user@svnserver</a>=20
    ---(ssh)---&gt; <a href=3D"mailto:admin@devserver">admin@devserver</=
a>=20
    ---(https)---&gt; svnserver<br><br>Seems weird to do it that way, bu=
t in=20
    order to maintain a&nbsp; mirror of our code on the dev server we ne=
ed to=20
    issue an 'update' command to the svn client on the dev server where =
we want=20
    the mirror, and this is triggered by a process on the svn server=20
    itself.&nbsp; The first part seems to be working with one weird=20
    exception:<br><br>If I log onto the devserver and launch a command p=
rompt,=20
    the command 'svn' is known by virtue of path. Oddly, if I ssh to tha=
t server=20
    as the same user, the command 'ssh' is not known. Does Cygwin (or Op=
enSSH)=20
    maintain it's own path variable=3F&nbsp; If so, where is it=20
    kept=3F<br><br>Robert <br>
    <blockquote style=3D"border-left: 2px solid rgb(0, 0, 255); padding-=
left: 5px; margin-left: 5px; margin-right: 0px;">
      <hr>
      <b>From:</b> Welsh, Armand [mailto:<a href=3D"mailto:Armand.Welsh@=
sscims.com">[email protected]</a>]<br><b>To:</b>=20
      <a href=3D"mailto:[email protected]">[email protected]</a><br><b>S=
ent:</b>=20
      Wed, 28 May 2008 14:33:24 -0700<br><b>Subject:</b> RE: Using Key P=
airs on=20
      OpenSSH on Win2k3<br><br>
      <div align=3D"left"><span class=3D"758572821-28052008">I don't thi=
nk the copSSH=20
      and the https based activities are related.&nbsp; Regarding the co=
nnection=20
      to the other server (via https), how is this connection establishe=
d=3F&nbsp;=20
      I need more information to understand the issue.&nbsp; Are you con=
necting=20
      (via ssh) to the server, and then on the server using wget or othe=
r=20
      command line util to get something from a web server=3F&nbsp; If y=
ou are=20
      using an SSH tunnel to connect to the https server using the ssh s=
erver as=20
      a middle point then I would need to know what client libraries on =
your=20
      client computer are used to establish the https session.</span></d=
iv>
      <div align=3D"left"><span class=3D"758572821-28052008"></span>&nbs=
p;</div>
      <div align=3D"left"><span class=3D"758572821-28052008">Armand</spa=
n></div><br>
      <div class=3D"OutlookMessageHeader" align=3D"left">
      <hr>
      <b>From:</b> <a href=3D"mailto:[email protected]">[email protected]=
m</a>=20
      [mailto:<a href=3D"mailto:[email protected]">[email protected]</a>=
] <b>On=20
      Behalf Of </b>Robert Denton<br><b>Sent:</b> Wednesday, May 28, 200=
8 12:49=20
      PM<br><b>To:</b> <a href=3D"mailto:[email protected]">ssh@erdelyne=
t.com</a><br><b>Subject:</b>=20
      Re: Using Key Pairs on OpenSSH on Win2k3<br><br></div>
      <div></div>So I took your advice and installed CopSSH instead and =
it is=20
      working as desired, with one minor snag.&nbsp; First, the applicat=
ion I am=20
      using this for is to connect to the copssh server and run some=20
      commands.&nbsp; One of the commands involves connection to a diffe=
rent=20
      server via https.&nbsp; When I do this I get prompted to accept th=
e=20
      certificate.&nbsp; Choosing 'p' for permanent has no effect.<br><b=
r>Advice=20
      I have gotten from other forums is that I need to download Comodo'=
s <span style=3D"margin-top: 0px; font-family: monospace; font-style: no=
rmal; font-variant: normal; font-weight: normal; font-size: 90%; line-he=
ight: normal; font-size-adjust: none; font-stretch: normal;">Trusted=20
      Root Certificate and append it to the end of the ca-bundle.crt tha=
t is=20
      used by OpenSSH.&nbsp; Unfortunately a search of the system yields=
 no such=20
      file.&nbsp; Where does CopSSH place this file=3F&nbsp; And do you =
agree that=20
      this is the recommended course of action=3F</span><br><br>Robert<b=
r>
      <blockquote style=3D"border-left: 2px solid rgb(0, 0, 255); paddin=
g-left: 5px; margin-left: 5px; margin-right: 0px;">
        <hr>
        <b>From:</b> Welsh, Armand [mailto:<a href=3D"mailto:Armand.Wels=
[email protected]">[email protected]</a>]<br><b>To:</b>=20
        <a href=3D"mailto:[email protected]">[email protected]</a><br><b=
>Sent:</b>=20
        Thu, 22 May 2008 09:17:19 -0700<br><b>Subject:</b> Re: Using Key=
 Pairs=20
        on OpenSSH on Win2k3<br><br>Robert,<br><br>Before I look into po=
tential=20
        causes, the first I would like to know is: are you using copSSH,=
 the=20
        Cygwin installation with the openSSH package installed, or the "=
openSSH=20
        for Windows" project from source forge=3F<br><br>Why do I ask=3F=
 Al three=20
        are openSSH from the cygwin project the following conditions:<br=
>Cygwin=20
        is the thick install proding the option to turn you windows box =
into a=20
        GNU Linux like operating system (via the bash or other shell and=
 some=20
        special mappers built into cygwin). The cygwin project installs =
a basic=20
        configuration of openSSH which works well on older windows syste=
ms, but=20
        requires specific things be done to get the SSH server to work 1=
00% on=20
        windows 2003 and Vista.<br><br>CopSSH is a pre-packaged minimal=
=20
        installation of Cygwin with a couple minor enhancement patches t=
hat=20
        installs Cygwin, openSSH, configures you computer (even vista an=
d=20
        win2k3) so that openSSH works without any tweaking at=20
        all.<br><br>"OpenSSH for Windows" is a dead sourceforge project =
that is=20
        almost identical to copSSH, except that development on the proje=
ct has=20
        stopped a long time ago, and this package requires more tweaking=
 of the=20
        ssh settings and the server that the other options, and is runni=
ng very=20
        old ssh code that should not be used anymore in my opinion.<br><=
br>If=20
        you want the easy solution, install copSSH and everything will w=
ork. If=20
        you want to get what you have working and you did not install co=
pSSH=20
        then we can offer assistance with making all the appropriate cha=
nges,=20
        but it will take more time to get SSH services up and running wi=
th=20
        public keys, but you will have the option of using any piece of =
the=20
        cygwin project=20
  easily.<br><br>Armand<br><br></blockquote></blockquote></blockquote></=
blockquote>


</blockquote><style>
 BODY {FONT:10pt Tahoma,Verdana,sans-serif}
</style>
</body></html>
-------------e0891fd948f58d8b631df74352569846--


--
List Info:      http://erdelynet.com/ssh-l/
List Archives:  http://erdelynet.com/archive/ssh-l/
To Unsubscribe: Mail mailto:[email protected]
If you are having trouble unsubscribing, visit the List Info page for help.