Re: restricted users

From: Hong Tian (htian@ias.edu)
Date: 02/27/03

  • Next message: Clary, Steve: "Key Exchange Failed (error message)"
    From: Hong Tian <htian@ias.edu>
    To: "'secureshell@securityfocus.com'" <secureshell@securityfocus.com>
    Date: Thu, 27 Feb 2003 08:53:12 -0500
    
    

    Thanks all. Based on the following information, I will use the wildcard
    patterns to resolve it.

    -----------
    AllowUsers
    This keyword can be followed by a list of user name patterns,
    separated by spaces. If specified, login is allowed only for
    users names that match one of the patterns. `*' and `'? can be
    used as wildcards in the patterns. Only user names are valid; a
    numerical user ID is not recognized. By default, login is
    allowed for all users. If the pattern takes the form USER@HOST
    then USER and HOST are separately checked, restricting logins to
    particular users from particular hosts.

    DenyUsers
    This keyword can be followed by a list of user name patterns,
    separated by spaces. Login is disallowed for user names that
    match one of the patterns. `*' and `?' can be used as wildcards
    in the patterns. Only user names are valid; a numerical user ID
    is not recognized. By default, login is allowed for all users.
    If the pattern takes the form USER@HOST then USER and HOST are
    separately checked, restricting logins to particular users from
    particular hosts.



    Relevant Pages

    • Re: sshd attacks
      ... starts trying a user dictionary attack on sshd? ... ssh allows you to specify which users may login and you may further restrict it to a particular user from a particular host. ... This keyword can be followed by a list of user name patterns, ...
      (comp.unix.bsd.freebsd.misc)
    • Re: ssh password problem
      ... using rsa public keys. ... This keyword can be followed by a list of user name patterns, ... Login is disallowed for user names that ... The allow/deny directives are processed in the following ...
      (Fedora)
    • Re: Disabling access to SSH
      ... > but which ssh are you using? ... This keyword can be followed by a list of user name patterns, ... By default, login is ... then USER and HOST are separately checked, ...
      (Debian-User)
    • Re: BLOCK SSH FOR CERTAIN USERS
      ... This keyword can be followed by a list of user name patterns, ... login is allowed for all ... HOST are separately checked, restricting logins to particular ...
      (comp.unix.aix)
    • Re: BLOCK SSH FOR CERTAIN USERS
      ... This keyword can be followed by a list of user name patterns, ... login is allowed for all ... HOST are separately checked, restricting logins to particular ...
      (comp.unix.aix)