{"id":33,"date":"2004-08-01T13:01:04","date_gmt":"2004-08-01T04:01:04","guid":{"rendered":"http:\/\/www.kazu.tv\/blog\/?p=33"},"modified":"2004-08-01T13:01:04","modified_gmt":"2004-08-01T04:01:04","slug":"cygwin_on_sbs_2","status":"publish","type":"post","link":"https:\/\/kazu.tv\/blog\/2004\/08\/01\/cygwin_on_sbs_2\/","title":{"rendered":"cygwin on SBS 2003"},"content":{"rendered":"<p>Windows Small Business Server 2003 (SBS 2003)\u306bcygwin\u5165\u308c\u3066\u307e\u3059\u3002<br \/>\n\u624b\u9806<\/p>\n<ol>\n<li>\u3068\u308a\u3042\u3048\u305a\u901a\u5e38\u306e\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3002\u30c7\u30d5\u30a9\u30eb\u30c8\u304b\u3089openssh, rsync\u3092\u8ffd\u52a0\u3059\u308b\u3002\n<li>ssh\u306e\u8a2d\u5b9a\n<div class=\"code\">#ssh-host-config -y<br \/>\nOverwrite existing \/etc\/ssh_config file? (yes\/no) yes<br \/>\nGenerating \/etc\/ssh_config file<br \/>\nOverwrite existing \/etc\/sshd_config file? (yes\/no) yes<br \/>\nPrivilege separation is set to yes by default since OpenSSH 3.3.<br \/>\nHowever, this requires a non-privileged account called &#8216;sshd&#8217;.<br \/>\nFor more info on privilege separation read \/usr\/share\/doc\/openssh\/README.privsep.<br \/>\nShould privilege separation be used? (yes\/no) yes<br \/>\nGenerating \/etc\/sshd_config file<br \/>\nWarning: The following functions require administrator privileges!<br \/>\nDo you want to install sshd as service?<br \/>\n(Say &#8220;no&#8221; if it&#8217;s already installed as service) (yes\/no) yes<br \/>\nYou appear to be running Windows 2003 Server or later.  On 2003 and<br \/>\nlater systems, it&#8217;s not possible to use the LocalSystem account<br \/>\nif sshd should allow passwordless logon (e. g. public key authentication).<br \/>\nIf you want to enable that functionality, it&#8217;s required to create a new<br \/>\naccount &#8216;sshd_server&#8217; with special privileges, which is then used to run<br \/>\nthe sshd service under.<br \/>\nShould this script create a new local account &#8216;sshd_server&#8217; which has<br \/>\nthe required privileges? (yes\/no) yes<br \/>\nPlease enter a password for new user &#8216;sshd_server&#8217;.  Please be sure that<br \/>\nthis password matches the password rules given on your system.<br \/>\nEntering no password will exit the configuration.  PASSWORD=xxxxxx<br \/>\nWARNING: Adding user sshd_server to local group root<br \/>\nAdministrators failed!<br \/>\nPlease add sshd_server to local group root<br \/>\nAdministrators before<br \/>\nstarting the sshd service!<br \/>\nUser &#8216;sshd_server&#8217; has been created with password &#8216;xxxxxxxx&#8217;.<br \/>\nIf you change the password, please keep in mind to change the password<br \/>\nfor the sshd service, too.<br \/>\nAlso keep in mind that the user sshd_server needs read permissions on all<br \/>\nusers&#8217; .ssh\/authorized_keys file to allow public key authentication for<br \/>\nthese users!.  (Re-)running ssh-user-config for each user will set the<br \/>\nrequired permissions correctly.<br \/>\nWhich value should the environment variable CYGWIN have when<br \/>\nsshd starts? It&#8217;s recommended to set at least &#8220;ntsec&#8221; to be<br \/>\nable to change user context without password.<br \/>\nDefault is &#8220;ntsec&#8221;.  CYGWIN=<br \/>\nThe service has been installed under sshd_server account.<br \/>\nTo start the service, call `net start sshd&#8217; or `cygrunsrv -S sshd&#8217;.<br \/>\nHost configuration finished. Have fun!\n<\/div>\n<li>\u74b0\u5883\u5909\u6570CYGWIN\u306fntsec\u3068\u3057\u305f\u3002\n<li>sshd_config\u306e\u4fee\u6b63\u3002\n<div class=\"code\">\n$ chown Administrator \/etc\/sshd_config\n<\/div>\n<\/li>\n<li>net start sshd \u3067sshd\u306e\u8d77\u52d5<\/li>\n<\/ol>\n<p>SBS 2003\u3092\u5165\u308c\u305f\u30de\u30b7\u30f3\u306f\u4e3b\u306b\u30d5\u30a1\u30a4\u30eb\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u4f7f\u3046\u4e88\u5b9a\u306a\u306e\u3067\u3001\u5bb6\u306b\u3042\u308bLinux PC\u306e\u91cd\u8981\u306a\u30d5\u30a1\u30a4\u30eb\u3092rsync + ssh\u3067\u3053\u306e\u30d5\u30a1\u30a4\u30eb\u306b\u30d0\u30c3\u30af\u30a2\u30c3\u30d7\u3057\u305f\u3044\u3002\u306a\u306e\u3067\u3001\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u306a\u3057\u306e\u516c\u958b\u9375\u8a8d\u8a3c\u304c\u3067\u304d\u308c\u3070\u3044\u3044\u3093\u3060\u3051\u3069\u3001\u3053\u3053\u3067\u5927\u30cf\u30de\u308a\u3057\u305f\u3002<br \/>\n\u7d50\u8ad6\u304b\u3089\u8a00\u3046\u3068\u3001\/usr\/share\/doc\/Cygwin\/openssh.README \u306b\u89e3\u6c7a\u7b56\u304c\u8f09\u3063\u3066\u3044\u308b\u3093\u3060\u3051\u3069\u3001\u305d\u3053\u306b\u81f3\u308b\u307e\u3067\u306b3\u6642\u9593\u304f\u3089\u3044\u304b\u304b\u3063\u305f\u3001\u3001\u3001<br \/>\nopenssh.README\u8a72\u5f53\u90e8\u5206\u306e\u8d85\u8a33<\/p>\n<blockquote>\n<p>\n2003 Server \u306b\u306f\u5909\u306a\u65b0\u6a5f\u80fd\u304c\u3042\u308b\u3093\u3060\u3002\u30b5\u30fc\u30d3\u30b9\u3092SYSTEM\u30a2\u30ab\u30a6\u30f3\u30c8\u3067\u8d77\u52d5\u3059\u308b\u3068\u3001\u305d\u306e\u30b5\u30fc\u30d3\u30b9\u306fSYSTEM\u30a2\u30ab\u30a6\u30f3\u30c8\u304c\u6301\u3063\u3066\u3044\u308b\u307b\u3068\u3093\u3069\u306e\u30e6\u30fc\u30b6\u30fc\u6a29\u9650\u3092\u6301\u3064\u3093\u3060\u3051\u3069\u3001&#8221;\u30c8\u30fc\u30af\u30f3\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u306e\u4f5c\u6210&#8221;\u306e\u6a29\u9650\u306f\u6301\u305f\u306a\u304f\u3066\u3001\u3067\u3082\u305d\u308c\u3063\u3066\u516c\u958b\u9375\u8a8d\u8a3c\u306b\u5fc5\u8981\u306a\u3093\u3060\u3088\u306d\u30fc^^;<br \/>\n\u307e\u3041\u3057\u3087\u3046\u304c\u306a\u3044\u306e\u3067\u3001\u9069\u5207\u306a\u6a29\u9650\u3092\u6301\u3063\u305f\u4ee3\u308a\u306e\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u4f5c\u308b\u3001\u3068\u3002\u305d\u306e\u30a2\u30ab\u30a6\u30f3\u30c8\u306fadministrators\u30b0\u30eb\u30fc\u30d7\u306e\u30e1\u30f3\u30d0\u30fc\u306b\u3057\u3066\u3001\u305d\u308c\u306b\u52a0\u3048\u3066\u4ee5\u4e0b\u306e\u6a29\u9650\u304c\u5fc5\u8981\u3002<br \/>\n\u30c8\u30fc\u30af\u30f3 \u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u306e\u4f5c\u6210<br \/>\n\u30b5\u30fc\u30d3\u30b9\u3068\u3057\u3066\u30ed\u30b0\u30aa\u30f3<br \/>\n\u30d7\u30ed\u30bb\u30b9 \u30ec\u30d9\u30eb \u30c8\u30fc\u30af\u30f3\u306e\u7f6e\u304d\u63db\u3048<br \/>\n\u30d7\u30ed\u30bb\u30b9\u306e\u30e1\u30e2\u30ea\u30af\u30a9\u30fc\u30bf\u306e\u5897\u52a0<br \/>\nssh-host-config\u30d7\u30ed\u30b0\u30e9\u30e0\u306f\u305d\u3046\u3057\u305f\u6a29\u9650\u3092\u6301\u3063\u305fsshd_server\u3063\u3066\u3044\u3046\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u4f5c\u308b\u304b\u3069\u3046\u304b\u805e\u3044\u3066\u304f\u308b\u306e\u3067\u5f53\u7136Yes\u3092\u9078\u307c\u3046\u3002No\u3092\u9078\u3093\u3060\u5834\u5408\u306f\u307e\u3041\u52dd\u624b\u306b\u3057\u306a\u3088\u3002\u305d\u3046\u305d\u3046\u3001ssh-host-config\u306e\u6307\u793a\u306b\u306f\u5f93\u3046\u3053\u3068\u3002\u3042\u3068\u3001ssh-user-config\u306fsshd_server\u30a2\u30ab\u30a6\u30f3\u30c8\u304c\u3042\u308b\u304b\u306a\u3044\u304b\u306b\u3088\u3063\u3066\u9069\u5207\u306b\u6a29\u9650\u3092\u8a2d\u5b9a\u3057\u3066\u304f\u308c\u308b\u3088\u3002\n<\/p><\/blockquote>\n<p>\u3067\u3001\u3067\u3059\u306d\u3001ssh-host-config\u306b\u5f93\u3048\u3070\u4e07\u4e8bOK\u306e\u3088\u3046\u306a\u3093\u3060\u3051\u3069\u3001\u3053\u308c\u3060\u3051\u3060\u3068\u30c0\u30e1\u3060\u3063\u305f\u3002sshd-host-config\u306fsshd_server\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u591a\u5206\u30ed\u30fc\u30ab\u30ebAdministrators\u30b0\u30eb\u30fc\u30d7\u306b\u5165\u308c\u3088\u3046\u3068\u3057\u3066\u3044\u308b\u3093\u3060\u308d\u3046\u306d\u3002\u3067\u3082Active Directory\u306e\u30c9\u30e1\u30a4\u30f3\u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u3067\u306f\u30ed\u30fc\u30ab\u30eb\u30a2\u30ab\u30a6\u30f3\u30c8\u306f\u5b58\u5728\u3057\u306a\u3044\u306e\u3067\u3001\u300c\u7ba1\u7406\u30c4\u30fc\u30eb\u300d->\u300cActive Directory\u30e6\u30fc\u30b6\u30fc\u3068\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u300d\u3067sshd_server\u3092administrators\u30b0\u30eb\u30fc\u30d7\u306b\u5165\u308c\u3066\u3084\u308b\u5fc5\u8981\u304c\u3042\u308b\u3002<br \/>\n\u3088\u3046\u3084\u304f\u3053\u308c\u3067\u516c\u958b\u9375\u8a8d\u8a3c\u304c\u4f7f\u3048\u308b\u3088\u3046\u306b\u306a\u3063\u305f\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Windows Small Business Server 2003 (SBS 2003)\u306bcygwin\u5165\u308c\u3066\u307e\u3059\u3002 \u624b\u9806 \u3068\u308a\u3042\u3048\u305a\u901a\u5e38\u306e\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3002\u30c7\u30d5\u30a9\u30eb\u30c8\u304b\u3089openssh, rsync\u3092\u8ffd\u52a0\u3059\u308b\u3002 ssh\u306e\u8a2d&hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[24],"tags":[],"class_list":["post-33","post","type-post","status-publish","format-standard","hentry","category-windows"],"_links":{"self":[{"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/posts\/33","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/comments?post=33"}],"version-history":[{"count":0,"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/posts\/33\/revisions"}],"wp:attachment":[{"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/media?parent=33"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/categories?post=33"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kazu.tv\/blog\/wp-json\/wp\/v2\/tags?post=33"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}