Re: reverse SSH tunnels and mediawiki

From: Darren Tucker (dtucker_at_gate.dodgy.net.au)
Date: 11/10/05


Date: 10 Nov 2005 20:39:02 GMT

On 2005-11-10, Richard E. Silverman <res@qoxp.net> wrote:
> If your web browser supports SOCKS, you may be able to use the
> OpenSSH -D feature -- although this is less useful than it should be,
> since (at least the last time I checked) OpenSSH does not pass name
> resolution through SOCKS.

It's time to check again :-)

OpenSSH has supported SOCKS5 since (I think) 3.7x, and it includes support
for remote host lookups (ie SOCKS5_DOMAIN) if the SOCKS client sends them.

Last time I checked most browsers don't send SOCKS5_DOMAIN requests even
when they're configured to use SOCKS5, though.

-- 
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4  37C9 C982 80C7 8FF4 FA69
    Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.


Relevant Pages

  • Re: Forwarding HTTP traffic through SSH using Windows
    ... what happened to SOCKS 4A in that analysis? ... Not currently implemented in OpenSSH as far as I know. ... built in to the IP stack for it. ... Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: Remedies against ISPs
    ... he never had a leg to stand on. ... Have you seen the judgement? ... Strange you replied to a post addressed to Peter Turtill? ... Unless you are another of his socks ...
    (uk.legal)
  • Re: Partial SNAFUs - X11Forwarding etc.
    ... Internet connectivity, both browser and ssh must do SOCKS v5, which can ... Firefox has a button for the remote DNS lookups but it's off by default. ... Good judgement comes with experience. ...
    (comp.security.ssh)