- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: sshd config
Categories
Company
Local Language
Forums
Discussions
Knowledge Base
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Knowledge Base
Forums
Discussions
- Cloud Mentoring and Education
- Software - General
- HPE OneView
- HPE Ezmeral Software platform
- HPE OpsRamp
Knowledge Base
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-28-2009 03:56 AM
09-28-2009 03:56 AM
i nee to enable root login but want to restrict it so that only 1 node can achieve direct root login, i have been searching though SSHD_config but not obvious how i can achieve.
all answers gartefully rewarded.
regards
andrew
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-28-2009 04:07 AM
09-28-2009 04:07 AM
Re: sshd config
check this link :
http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=866540
mikap
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-28-2009 04:13 AM
09-28-2009 04:13 AM
Re: sshd config
# Authentication:
#LoginGraceTime 2m
PermitRootLogin no
#StrictModes yes
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-28-2009 04:13 AM
09-28-2009 04:13 AM
SolutionTo allow root logins from a specified client machine:
PermitRootLogin yes
and change AllowUsers to allow root log ins only from the specified client machine:
AllowUsers root@client_machine
The AllowUsers will affect all other users as well, if they are not listed there, they won't be able to connect to sshd (add users separated by space). Keep this in mind :)
Also, a quite common headbreaking problem is that sshd tries to reverse lookup the ip of the client, if it doesn't resolve to the specified hostname, you will be denied access.
Kind regards,
Kobylka
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-28-2009 10:36 AM
09-28-2009 10:36 AM
Re: sshd config
from="*.eng.cam.ac.uk,!untrusted.eng.cam.ac.uk"
You still need to set the PermitRootLogin to yes, but you could change the root password to something very difficult. You could disable passwords for root (create a backdoor if it does not work like sudo).
You could use sudo in a combination with ssh-keys and NOPASSWD in the sudoers file.