Skip to content

Chrooted SFTP does not log username after installing KB5044281 #2295

Closed
PowerShell/openssh-portable
#762
@anttihookoo

Description

@anttihookoo

Prerequisites

  • Write a descriptive title.
  • Make sure you are able to repro it on the latest version
  • Search the existing issues.

Steps to reproduce

After KB5044281 update, we cannot see username in eventlog for SFTP uploads or any other commands. Before update, real username was listed in USER field. Now there is only SYSTEM as a user for all operations. SFTP Server is configured as chrooted (users cannot move away from their home directories).

The big guestion is, is this a new feature, or will it be fixed? Solving integration (sftp) related problems is almost impossible, without knowing which user is doing what.

screenshot sftp upload

Expected behavior

Logging (to eventlog, which is the recommended way) should include username, who did the operation (upload, download rename etc).

Actual behavior

In eventlog entries all operation are made by User: SYSTEM

Error details

No response

Environment data

PS C:\Windows\system32> $PSVersionTable

Name                           Value
----                           -----
PSVersion                      5.1.20348.2760
PSEdition                      Desktop
PSCompatibleVersions           {1.0, 2.0, 3.0, 4.0...}
BuildVersion                   10.0.20348.2760
CLRVersion                     4.0.30319.42000
WSManStackVersion              3.0
PSRemotingProtocolVersion      2.3
SerializationVersion           1.1.0.1

Version

PS C:\Windows\system32> ssh -V OpenSSH_for_Windows_9.5p1, LibreSSL 3.8.2

Visuals

No response

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions