Re: No shell only forwarding

phyzlo_at_yahoo.com
Date: 09/19/05

  • Next message: Alan Hadsell: "Re: No shell only forwarding"
    Date: 19 Sep 2005 11:20:53 -0700
    
    

    Thanks for the reply!

    >
    > It would help if you mentioned what OS and SSH software you're using.
    >
    > With OpenSSH, if you set the user's shell to something that is listed
    > in /etc/shells but exits immediately (eg /bin/true) then the user will
    > still be able to forward ports with something like:
    >
    > ssh -N -L 1234:foo.example.com:1234 bar.example.com
    >

    Sorry for that. I'm using OpenSSH server on my Linux machine but I
    would like the client machines on windows (using putty or any other ssh
    client) not have shell access.

    I tried the -N parameter and it seems to work, but then it is the
    client who's requesting not to access the shell. I would like to do
    this on the server side.

    Maybe if I could hang the shell into some kind of loop ? So that it
    does not disconnect but also not let you in ?

    Thanks again!


  • Next message: Alan Hadsell: "Re: No shell only forwarding"

    Relevant Pages

    • Re: Trouble logging in with public key--Secure Shell and OpenSSH
      ... >I have OpenSSH running on a linux box, and I'm using Secure ... >Shell 3.23 on my Windows box at home. ... I trust you're converting the key to the correct format for use with ...
      (comp.security.ssh)
    • Re: Cleaning out unneeded executables
      ... This subshell exposed filenames to shell expansion twice; ... : OpenBSD, OpenSSH, 4.2 p1 ...
      (comp.os.linux.security)
    • Funny things happening with openssh on one of my Solaris 8 boxes
      ... versions on my server) times out (shell already running, ... whether shell is busy or idle) after appr. ... Solaris 8, same openssh, same shell) where everything is ok without ...
      (SunManagers)
    • Re: restricted SSH users
      ... Make his shell as /bin/false ... Subject: restricted SSH users ... > I am running openssh-3.4p1 on a Unix system. ... Could Openssh only allow some ...
      (SSH)
    • Re: XPe PXE RDP minimum config?
      ... As I also mentioned you can easily eliminate CMD related components and then you will have to launch the RDP client as the Shell, ... Common Control Libraries Version 5 ... Intel Protocol Network Address Translation ...
      (microsoft.public.windowsxp.embedded)