ssh application level firewall

From: Timo Proescholdt (timo_at_proescholdt.de)
Date: 05/28/04


Date: 28 May 2004 11:51:41 -0700

Hi folks,

does someone know a (open source) application level firewall for ssh?
The reason for this is, that i want to set a box between the internet
and several douzen (unpatched) ssh remote access boxes.

This would make security management easier, because there would be only
one sshd exposed to the net.

Actually mitm is exactly what i am looking for, but unfortunately it supports
only sshv1 and i know nothing about filefransfer.

The solution has to support file transfer and rpc over ssh as well.
Because of that i am afraid a global "ProxyCommand" is not supposed to work.

Due to the fact that dns is under my control i do not expect to get into
any trouble with invalid keys.

many thanks for your help

greetings
timo



Relevant Pages

  • Re: How do you kill a completely locked up thread?
    ... In this particular case, I need SSH, which for some reason Microsoft doesn't ... back in the days where there was no memory protection for applications. ... rogue application could bring the entire system down. ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: Switching audit files under Solaris 8 via cron
    ... and restart the ssh deamon. ... If not, you are really in trouble, because BSM won't ... [This is also the reason BSM won't give you ... >does allow me to edit crontab files over ssh links. ...
    (Focus-SUN)
  • Re: background processes?
    ... >> JM> I'm not arguing with the presumed reason for having this ... > interactive command session, ... SSH author, ... If run $FOO over RSH, ...
    (comp.security.ssh)
  • Re: The Sound of Silence
    ... reason everything I did over ssh was ridiculously slow. ... Badly optimized OpenSSH build perhaps? ...
    (rec.arts.sf.fandom)
  • Re: Permit root login for telnet..
    ... The number one reason is that SSH is encrypted. ... deal in ssh vs. telnet? ... Permit root login for telnet.. ...
    (RedHat)