<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://k2.ixota.com/index.php?action=history&amp;feed=atom&amp;title=Windows%2FSSH</id>
	<title>Windows/SSH - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://k2.ixota.com/index.php?action=history&amp;feed=atom&amp;title=Windows%2FSSH"/>
	<link rel="alternate" type="text/html" href="https://k2.ixota.com/index.php?title=Windows/SSH&amp;action=history"/>
	<updated>2026-06-26T16:08:12Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.33.1</generator>
	<entry>
		<id>https://k2.ixota.com/index.php?title=Windows/SSH&amp;diff=5857&amp;oldid=prev</id>
		<title>Kenneth at 17:50, 12 March 2021</title>
		<link rel="alternate" type="text/html" href="https://k2.ixota.com/index.php?title=Windows/SSH&amp;diff=5857&amp;oldid=prev"/>
		<updated>2021-03-12T17:50:42Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;== Chocolatey ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
Set-ExecutionPolicy Bypass -Scope Process -Force&lt;br /&gt;
[System.Net.ServicePointManager]::SecurityProtocol = 3072&lt;br /&gt;
iex ((New-Object System.Net.WebClient).DownloadString(&amp;#039;https://chocolatey.org/install.ps1&amp;#039;))&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
$env:chocolateyUseWindowsCompression = &amp;#039;true&amp;#039;&lt;br /&gt;
choco install -y openssh -params &amp;#039;&amp;quot;/SSHServerFeature&amp;quot;&amp;#039;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== Config ===&lt;br /&gt;
&lt;br /&gt;
 C:\ProgramData\ssh&lt;br /&gt;
&lt;br /&gt;
 sshd_config:&lt;br /&gt;
  AuthorizedKeysFile	.ssh/authorized_keys&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
Match Group administrators&lt;br /&gt;
       AuthorizedKeysFile __PROGRAMDATA__/ssh/administrators_authorized_keys&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== SSH Keys ===&lt;br /&gt;
&lt;br /&gt;
Place the keys in&lt;br /&gt;
 C:\ProgramData\ssh\administrators_authorized_keys&lt;br /&gt;
&lt;br /&gt;
Fix the permissions with Powershell:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
$acl = Get-Acl C:\ProgramData\ssh\administrators_authorized_keys&lt;br /&gt;
$acl.SetAccessRuleProtection($true, $false)&lt;br /&gt;
$administratorsRule = New-Object system.security.accesscontrol.filesystemaccessrule(&amp;quot;Administrators&amp;quot;,&amp;quot;FullControl&amp;quot;,&amp;quot;Allow&amp;quot;)&lt;br /&gt;
$systemRule = New-Object system.security.accesscontrol.filesystemaccessrule(&amp;quot;SYSTEM&amp;quot;,&amp;quot;FullControl&amp;quot;,&amp;quot;Allow&amp;quot;)&lt;br /&gt;
$acl.SetAccessRule($administratorsRule)&lt;br /&gt;
$acl.SetAccessRule($systemRule)&lt;br /&gt;
$acl | Set-Acl&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
ref: https://www.concurrency.com/blog/may-2019/key-based-authentication-for-openssh-on-windows&lt;br /&gt;
&lt;br /&gt;
== Ansible ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
- name: Install openssh&lt;br /&gt;
  win_chocolatey:&lt;br /&gt;
    name: openssh&lt;br /&gt;
    package_params: /SSHServerFeature&lt;br /&gt;
    state: present&lt;br /&gt;
  tags: openssh&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
ref: https://curiousdba.netlify.app/post/windowsopenssh/&lt;/div&gt;</summary>
		<author><name>Kenneth</name></author>
		
	</entry>
</feed>