通过 ::1 端口 22 重置连接Windows 10 + PowerShell/cmd + OpenSSH

问题描述

我是 Windows 10(版本 20H2,内部版本 19042.746)的主机,安装了 WSL2(例如:https://docs.microsoft.com/en-us/windows/wsl/install-win10)。

在我安装 OpenSSH(例如:https://docs.microsoft.com/en-us/windows-server/administration/openssh/openssh_install_firstusehttps://www.hanselman.com/blog/the-easy-way-how-to-ssh-into-bash-and-wsl2-on-windows-10-from-an-external-machine)之后,在 PowerShell 中以管理员身份使用这些命令

> Get-WindowsCapability -Online | ? Name -like 'OpenSSH*'

Name  : OpenSSH.Client~~~~0.0.1.0
State : Installed

Name  : OpenSSH.Server~~~~0.0.1.0
State : NotPresent

> Add-WindowsCapability -Online -Name OpenSSH.Server~~~~0.0.1.0
> Start-Service sshd
> Get-Service sshd
> Set-Service -Name sshd -StartupType 'Automatic'
> New-ItemProperty -Path "HKLM:\SOFTWARE\OpenSSH" -Name DefaultShell -Value "C:\Windows\System32\bash.exe"
> Get-WindowsCapability -Online | ? Name -like 'OpenSSH*'

Name  : OpenSSH.Client~~~~0.0.1.0
State : Installed

Name  : OpenSSH.Server~~~~0.0.1.0
State : Installed

我检查了 Windows 防火墙是否将 OpenSSH 服务包含为活动且开放的入站规则。

我也用 telnet 进行了检查:

> telnet localhost 22
SSH-2.0-OpenSSH_for_Windows_7.7

直到这里似乎一切正常!

现在出现问题,也在PowerShell(或cmd)中运行命令:

> ssh localhost
Connection reset by ::1 port 22

有没有人遇到同样的问题(运行:Windows 10 + PowerShell/cmd + OpenSSH)?

有谁知道为什么会出现这个问题?

有人知道如何解决这个问题吗?

谢谢!

============= 更多信息 ==============

按照另一个命令进行调试:

> sshd -d
debug1: sshd version OpenSSH_for_Windows_7.7,LibreSSL 2.6.5
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_rsa_key
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_ecdsa_key
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_ed25519_key
sshd: no hostkeys available -- exiting.

__PROGRAMDATA__ 似乎指的是 Windows 环境变量 %PROGRAMDATA%,它指向 C:\ProgramData

> ls C:\ProgramData\ssh

    Diretório: C:\ProgramData\ssh


Mode                 LastWriteTime         Length Name
----                 -------------         ------ ----
d-----        25/01/2021     19:59                logs
-a----        27/01/2021     02:03           2252 sshd_config
-a----        25/01/2021     19:59            668 ssh_host_dsa_key
-a----        25/01/2021     19:59            628 ssh_host_dsa_key.pub
-a----        25/01/2021     19:59            227 ssh_host_ecdsa_key
-a----        25/01/2021     19:59            200 ssh_host_ecdsa_key.pub
-a----        25/01/2021     19:59            432 ssh_host_ed25519_key
-a----        25/01/2021     19:59            120 ssh_host_ed25519_key.pub
-a----        25/01/2021     19:59            420 ssh_host_rsa_key.pub

遵循 sshd 配置中的内容

> cat C:\WINDOWS\System32\OpenSSH\sshd_config_default
# This is the sshd server system-wide configuration file.  See
# sshd_config(5) for more @R_169_4045@ion.

# The strategy used for options in the default sshd_config shipped with
# OpenSSH is to specify options with their default value where
# possible,but leave them commented.  Uncommented options override the
# default value.

#Port 22
#AddressFamily any
#ListenAddress 0.0.0.0
#ListenAddress ::

#HostKey __PROGRAMDATA__/ssh/ssh_host_rsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_dsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_ecdsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_ed25519_key

# Ciphers and keying
#RekeyLimit default none

# Logging
#SyslogFacility AUTH
#LogLevel INFO

# Authentication:

#LoginGraceTime 2m
#PermitRootLogin prohibit-password
#StrictModes yes
#MaxAuthTries 6
#MaxSessions 10

#PubkeyAuthentication yes

# The default is to check both .ssh/authorized_keys and .ssh/authorized_keys2
# but this is overridden so installations will only check .ssh/authorized_keys
AuthorizedKeysFile      .ssh/authorized_keys

#AuthorizedPrincipalsFile none

# For this to work you will also need host keys in %programData%/ssh/ssh_k@R_502_6363@n_hosts
#HostbasedAuthentication no
# Change to yes if you don't trust ~/.ssh/k@R_502_6363@n_hosts for
# HostbasedAuthentication
#IgnoreUserK@R_502_6363@nHosts no
# Don't read the user's ~/.rhosts and ~/.shosts files
#IgnoreRhosts yes

# To disable tunneled clear text passwords,change to no here!
PasswordAuthentication yes
#PermitEmptyPasswords no

#AllowAgentForwarding yes
#AllowTcpForwarding yes
#GatewayPorts no
#PermitTTY yes
#PrintMotd yes
#PrintLastLog yes
#TCPKeepAlive yes
#UseLogin no
#PermitUserEnvironment no
#ClientAliveInterval 0
#ClientAliveCountMax 3
#UsednS no
#PidFile /var/run/sshd.pid
#MaxStartups 10:30:100
#PermitTunnel no
#ChrootDirectory none
#VersionAddendum none

# no default banner path
#Banner none

# override default of no subsystems
Subsystem       sftp    sftp-server.exe

# Example of overriding settings on a per-user basis
#Match User anoncvs
#       AllowTcpForwarding no
#       PermitTTY no
#       ForceCommand cvs server

Match Group administrators
       AuthorizedKeysFile __PROGRAMDATA__/ssh/administrators_authorized_keys

解决方法

我遇到了同样的问题并已修复。需要将提取的 Open-SSH 文件夹移动到 Program Files 并且它可以正常工作。