1847084 Members
4870 Online
110262 Solutions
New Discussion

Re: Open ssh

 
Ray Bell
Regular Advisor

Open ssh

I sent out a request for ssh and didn't get my request completed. Anyway I'm tyring this again. I want to stop certain servers from access to my server, so in the /opt/ssh/etc/sshd_config I have place the following :
DenyHosts xxx.xxx.xx.xx and when I start the secure shell back up I get an error message on the configuration file for the enrty I just added. Please help!!!! What is the right syntax.....
6 REPLIES 6
Christopher McCray_1
Honored Contributor

Re: Open ssh

Hello again, and sorry for not coming back.

I refer you to my last response, however, I may not be using a true OpenSSH. I just tried what I suggested to you and it worked for me.

I added a line to deny one of my networks:

DenyHosts xxx.xxx.xxx.* (tab between DenyHosts and IP, the network number, for multiple, separate with comma-space)

then kill -HUP `/var/run/sshd2_22.pid`

I tested this on my PC to make sure I could tell. Another option may be using the \m:

DenyHosts \mxxx.xxx.xxx.0

Although I only read a little on this.

Hope this helps

Chris
It wasn't me!!!!
Deshpande Prashant
Honored Contributor

Re: Open ssh

HI
You may use the /var/adm/inetd.sec file to allow/deny IP based connections.
Add following line your inetd.sec file

ssh2 deny xxx.xxx.xx.xx
scp deny xxx.xxx.xx.xx

Thanks.
Prashant.
Take it as it comes.
Mike Hassell
Respected Contributor

Re: Open ssh

Ray,

Are you running OpenSSH or HP's Secure Shell? I don't think OpenSSH supports the DenyHosts parameter. Take a look at this from O'Reilly:

http://safari.oreilly.com/main.asp?bookname=sshtdg&snode=160

I don't know if this is true for all versions of OpenSSH.

Hope that helps.

-Mike
The network is the computer, yeah I stole it from Sun, so what?
Tim D Fulford
Honored Contributor

Re: Open ssh

Off track... I saw this today & thought you might be interested... If not hey ho

http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0x7ea33a7b3682d611abdb0090277a778c,00.html

Tim
-
Ray Bell
Regular Advisor

Re: Open ssh

I need to be more through... I have openssh running and wasn't getting anywhere so I down loaded the HP version yesterday and place it on another system and I'm tyring to get that version running. Once I do then I will replace all of my system with the HP version. Just having the hardest time trying to get the DenyHosts working. I have try the things I seen in the response but still no success. I will open a call to the HP call center and see if they have the answere.

Thanks...
Christopher McCray_1
Honored Contributor

Re: Open ssh

Hello again,

After hearing of your attempts in using HP's SSH, I found this link which looks like the beginnings of helping you find what you need.

http://support2.itrc.hp.com/service/cki/docDisplay.do?docLocale=en_US&docId=200000061597111#Q5

Hope this helps

Chris
It wasn't me!!!!