问题描述
我是 Windows 10(版本 20H2,内部版本 19042.746)的主机,安装了 WSL2(例如:https://docs.microsoft.com/en-us/windows/wsl/install-win10)。
在我安装 OpenSSH(例如:https://docs.microsoft.com/en-us/windows-server/administration/openssh/openssh_install_firstuse 和 https://www.hanselman.com/blog/the-easy-way-how-to-ssh-into-bash-and-wsl2-on-windows-10-from-an-external-machine)之后,在 PowerShell 中以管理员身份使用这些命令:
> Get-WindowsCapability -Online | ? Name -like 'OpenSSH*'
Name : OpenSSH.Client~~~~0.0.1.0
State : Installed
Name : OpenSSH.Server~~~~0.0.1.0
State : NotPresent
> Add-WindowsCapability -Online -Name OpenSSH.Server~~~~0.0.1.0
> Start-Service sshd
> Get-Service sshd
> Set-Service -Name sshd -StartupType 'Automatic'
> New-ItemProperty -Path "HKLM:\SOFTWARE\OpenSSH" -Name DefaultShell -Value "C:\Windows\System32\bash.exe"
> Get-WindowsCapability -Online | ? Name -like 'OpenSSH*'
Name : OpenSSH.Client~~~~0.0.1.0
State : Installed
Name : OpenSSH.Server~~~~0.0.1.0
State : Installed
我检查了 Windows 防火墙是否将 OpenSSH 服务包含为活动且开放的入站规则。
我也用 telnet 进行了检查:
> telnet localhost 22
SSH-2.0-OpenSSH_for_Windows_7.7
直到这里似乎一切正常!
现在出现问题,也在PowerShell(或cmd)中运行命令:
> ssh localhost
Connection reset by ::1 port 22
有没有人遇到同样的问题(运行:Windows 10 + PowerShell/cmd + OpenSSH)?
有谁知道为什么会出现这个问题?
有人知道如何解决这个问题吗?
谢谢!
============= 更多信息 ==============
按照另一个命令进行调试:
> sshd -d
debug1: sshd version OpenSSH_for_Windows_7.7,LibreSSL 2.6.5
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_rsa_key
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_ecdsa_key
debug1: key_load_private: Permission denied
debug1: key_load_public: Permission denied
Could not load host key: __PROGRAMDATA__\\ssh/ssh_host_ed25519_key
sshd: no hostkeys available -- exiting.
__PROGRAMDATA__
似乎指的是 Windows 环境变量 %PROGRAMDATA%
,它指向 C:\ProgramData
。
> ls C:\ProgramData\ssh
Diretório: C:\ProgramData\ssh
Mode LastWriteTime Length Name
---- ------------- ------ ----
d----- 25/01/2021 19:59 logs
-a---- 27/01/2021 02:03 2252 sshd_config
-a---- 25/01/2021 19:59 668 ssh_host_dsa_key
-a---- 25/01/2021 19:59 628 ssh_host_dsa_key.pub
-a---- 25/01/2021 19:59 227 ssh_host_ecdsa_key
-a---- 25/01/2021 19:59 200 ssh_host_ecdsa_key.pub
-a---- 25/01/2021 19:59 432 ssh_host_ed25519_key
-a---- 25/01/2021 19:59 120 ssh_host_ed25519_key.pub
-a---- 25/01/2021 19:59 420 ssh_host_rsa_key.pub
遵循 sshd 配置中的内容:
> cat C:\WINDOWS\System32\OpenSSH\sshd_config_default
# This is the sshd server system-wide configuration file. See
# sshd_config(5) for more @R_169_4045@ion.
# The strategy used for options in the default sshd_config shipped with
# OpenSSH is to specify options with their default value where
# possible,but leave them commented. Uncommented options override the
# default value.
#Port 22
#AddressFamily any
#ListenAddress 0.0.0.0
#ListenAddress ::
#HostKey __PROGRAMDATA__/ssh/ssh_host_rsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_dsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_ecdsa_key
#HostKey __PROGRAMDATA__/ssh/ssh_host_ed25519_key
# Ciphers and keying
#RekeyLimit default none
# Logging
#SyslogFacility AUTH
#LogLevel INFO
# Authentication:
#LoginGraceTime 2m
#PermitRootLogin prohibit-password
#StrictModes yes
#MaxAuthTries 6
#MaxSessions 10
#PubkeyAuthentication yes
# The default is to check both .ssh/authorized_keys and .ssh/authorized_keys2
# but this is overridden so installations will only check .ssh/authorized_keys
AuthorizedKeysFile .ssh/authorized_keys
#AuthorizedPrincipalsFile none
# For this to work you will also need host keys in %programData%/ssh/ssh_k@R_502_6363@n_hosts
#HostbasedAuthentication no
# Change to yes if you don't trust ~/.ssh/k@R_502_6363@n_hosts for
# HostbasedAuthentication
#IgnoreUserK@R_502_6363@nHosts no
# Don't read the user's ~/.rhosts and ~/.shosts files
#IgnoreRhosts yes
# To disable tunneled clear text passwords,change to no here!
PasswordAuthentication yes
#PermitEmptyPasswords no
#AllowAgentForwarding yes
#AllowTcpForwarding yes
#GatewayPorts no
#PermitTTY yes
#PrintMotd yes
#PrintLastLog yes
#TCPKeepAlive yes
#UseLogin no
#PermitUserEnvironment no
#ClientAliveInterval 0
#ClientAliveCountMax 3
#UsednS no
#PidFile /var/run/sshd.pid
#MaxStartups 10:30:100
#PermitTunnel no
#ChrootDirectory none
#VersionAddendum none
# no default banner path
#Banner none
# override default of no subsystems
Subsystem sftp sftp-server.exe
# Example of overriding settings on a per-user basis
#Match User anoncvs
# AllowTcpForwarding no
# PermitTTY no
# ForceCommand cvs server
Match Group administrators
AuthorizedKeysFile __PROGRAMDATA__/ssh/administrators_authorized_keys
解决方法
我遇到了同样的问题并已修复。需要将提取的 Open-SSH 文件夹移动到 Program Files 并且它可以正常工作。