X-Recipient: archive-cygwin AT delorie DOT com DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; q=dns; s= default; b=eyz8eZPm4qK8zcoiW4oHonAyN4hG1Nws1siYHOcnDUgF7MOHjS62M lOqNADxGtfZfM+RW9kMOKIODRCVuc/mN8J4oLp5rwPEiIbHGY178hUCkiz1gNaXE yxYYQG8qSG6+OtArjboqhL+hLVd15E8H+9rRSlPFrq44C/PSTH4NZU= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; s=default; bh=o/RIjGUuqjhro1dbkjLfEhn/qgE=; b=kDC+ABT1UOn1Q5UFhNwuQwxYbRzT 7mC8Wi+7orzFw2wES/TNQ0xreJzIrRFuJ4WYMbpi09WgyNfXjj//EvFhirwCGPtt /BCuvHixsVaFgnyUjB21kfXQN2RIuC3D6yWLFJtDtc2pbR8ZrxVOvFE25fdndITR 808B59wdaGjJzxc= Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Authentication-Results: sourceware.org; auth=none X-Virus-Found: No X-Spam-SWARE-Status: No, score=-5.4 required=5.0 tests=AWL,BAYES_00,KAM_LAZY_DOMAIN_SECURITY autolearn=no version=3.3.2 X-HELO: calimero.vinschen.de Date: Sun, 12 Apr 2015 16:53:47 +0200 From: Corinna Vinschen To: cygwin AT cygwin DOT com Subject: Re: [ANNOUNCEMENT] TEST RELEASE: Cygwin 2.0.0-2 Message-ID: <20150412145347.GT7343@calimero.vinschen.de> Reply-To: cygwin AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com References: <87sic5h3sb DOT fsf AT Rainer DOT invalid> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="YzdYn+D7cUqe+VA3" Content-Disposition: inline In-Reply-To: <87sic5h3sb.fsf@Rainer.invalid> User-Agent: Mutt/1.5.23 (2014-03-12) --YzdYn+D7cUqe+VA3 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Apr 12 15:31, Achim Gratz wrote: >=20 > THere seems to be a bug that causes sshd to be unable to change the new > PTY to mode "0600" (I'm using privilege separation). >=20 > ~ (2001) ll /dev/pty0 ; getfacl /dev /dev/pty0 > crw--w---- 1 ASSI Kein 136, 0 12. Apr 15:26 /dev/pty0 Hmm, works on the command line... $ ll /dev/pty0 crw--w---- 1 corinna vinschen 136, 0 Apr 12 16:28 /dev/pty0 $ chmod 600 !$ chmod 600 /dev/pty0 $ ll /dev/pty0 crw------- 1 corinna vinschen 136, 0 Apr 12 16:28 /dev/pty0 ...but I can easily reproduce it from sshd. I'll have a look this week. > # file: /dev/pty0 > # owner: ASSI > # group: Kein > user::rw- > group::rw- > other:rw- >=20 > Reverting to the 1.7.35-1 DLL gets sshd working correctly again. > Looking at the above I've questions about the permissions: on Linux the > PTY would be writable by the tty group, but having it writable by "None" > is surely a mistake an getfacl doesn't seem to report anything sensible > on PTY. The acl(2) function is not implemented for ptys.=20=20 Corinna --=20 Corinna Vinschen Please, send mails regarding Cygwin to Cygwin Maintainer cygwin AT cygwin DOT com Red Hat --YzdYn+D7cUqe+VA3 Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBAgAGBQJVKob7AAoJEPU2Bp2uRE+g5ZkP/jFudyLIE51Od9BXyUDO0+9l zK/1oTdCx09oYeD262k17+8PcRunAfPYOf6odM+t4aLx0uftrzH66/Gvx/fk9kXi bfb6Sz05S1wIesv5kMb38gBtFECSCb1WoJuZC9wK8zfri7E3vGmWNqAOZFFVQWux UNJXw8wtCuHB9bYPV5RQeMpYPjx5HaSNJgWjG5ckl2Vt4uDh6iKHvNTRhyoDwmtC xHEwjk1iE2itFuofrcz49vzq23vXUIe0tIgJU8KvGiD/qiWnQU9UjxS8UvE+BriC eWAqO2og6ztYX+RmCGA3JRgO8WBJk175E0Cguv0qT09Hw/bBmdj1apzkEzPH0lXM 1NbSbgvkEmkrqtkrGbeFcxZ2SsGRhGfcvZH02Afob0lekkNo/+C+bdMkfgXvtncY mbN3/eph/ues9sjwCYm0J21Jc+TbZhBm1EgCYrmGOCZkgCKUcHNjzHbAJagIsuSX hUW2v0IKx921m60UbWg7u2I/KtsNnY0RXZQjjF86+tnZng/hyky5sBLD7b1qUfbh q+3acL2+OMV73eZVp45OWwu0K4HPkHRSWojY6i+Nr1oCQyUDXc+tNPoRLCnmwmxr ctjJZitlj2IJ70V8xOJQ2AOgKzwTsvoVoVkQtnwWQDaMtdMH1qn2IMz87TSTpebw ZhQXqCpyAmlIyEtvll52 =gq5z -----END PGP SIGNATURE----- --YzdYn+D7cUqe+VA3--