not working AllowUsers DenyUsers

sasha_at_gw.polytech.yaroslavl.su
Date: 11/27/03

  • Next message: Markus Friedl: "Re: scp from openssh -> ssh.com?"
    Date: Fri, 28 Nov 2003 00:51:24 +0300
    To: secureshell@securityfocus.com
    
    

    Hello developers of Secureshell!!!
    I am writing ti you 'cause I can't properly configure
    sshd. I faced such a problem.
    I compiled openssh-3.6.1.p2 with standard options
    It is working well.
    But I want to restrict access to my server by ssh
    I don't want to use iptables for that, but I suppose
    there must be a mechanism to do these restrictions
    by sshd configs. Usage DenyUsers sasha is ignored
    That means I really log in.
    Usage `DenyUsers sasha@10.0.0.2` if I am connecting
    let's say from 10.0.0.2 to 10.0.0.1 as sasha to sasha is ignored
    also. Options fo such a type AllowHosts and DenyHosts are (imho)
    not supported - sshd yield a error while reading sshd_config.
    Please advise to me what to do. It is desirable to restrict
    access to all ip excluding local and from local ones to restrict
    only for all users excluding admins. I mean that if I want to try
    logging in from outside LAN the server would say `connection refused`
    or something else, but not asking a user name and password followed by
    `Permission denied` message but when connecting from LAN all users excuding
    admins would get `Permission denied` message.
    Anyway send a reply.
    I would be very gratefull to you.
    Waiting you in anticipation.
    Alex


  • Next message: Markus Friedl: "Re: scp from openssh -> ssh.com?"

    Relevant Pages

    • Re: user setup question
      ... > You can restrict the user to logging in only from the console, ... > or to logging in only locally. ... A quick Google revealed that sshd doesn't honor the login.access by ... Shouldn't all shell access methods honor any ...
      (freebsd-questions)
    • Re: Running SSHD as non-root user
      ... Darren Paxton ... >> Darren> Folks, I'd like to be able to run sshd as a non ... >> privileged Darren> user since when I'm connecting to my box ...
      (comp.security.ssh)
    • Re: help with login.conf session limiting
      ... >>I wonder if any of you have ever tried to restrict the # of simultaneous ... >>sessions on a FreeBSD box using login.conf. ... > login.conf is only used by login, not by sshd. ...
      (freebsd-stable)
    • Re: ssh gives "Permission denied, please try again"
      ... if the sshd daemon doesn't show a string of debug statements ... you're not connecting to that sshd daemon. ...
      (uk.comp.os.linux)
    • interpreting sshd logging
      ... Is there a site that explains what the sshd messages in my auth.log ... running on a Linux 2.4.18-evms Debian server. ... This is a known problem to the rsync developers, ... file server connecting to this Debian server and stopping after 3 or so ...
      (SSH)

  • Quantcast