source: debwrt/trunk/debian/rootfs/files/etc/ssh/sshd_config @ 66

Last change on this file since 66 was 66, checked in by amain, 10 years ago

Add custom files used in second stage debian install

File size: 1.8 KB
Line 
1# Package generated configuration file
2# See the sshd(8) manpage for details
3
4# What ports, IPs and protocols we listen for
5Port 22
6# Use these options to restrict which interfaces/protocols sshd will bind to
7#ListenAddress ::
8#ListenAddress 0.0.0.0
9Protocol 2
10# HostKeys for protocol version 2
11HostKey /etc/ssh/ssh_host_rsa_key
12HostKey /etc/ssh/ssh_host_dsa_key
13#Privilege Separation is turned on for security
14UsePrivilegeSeparation yes
15
16# Lifetime and size of ephemeral version 1 server key
17KeyRegenerationInterval 3600
18ServerKeyBits 768
19
20UseDNS no
21
22# Logging
23SyslogFacility AUTH
24LogLevel INFO
25
26# Authentication:
27LoginGraceTime 120
28PermitRootLogin yes
29StrictModes yes
30
31RSAAuthentication yes
32PubkeyAuthentication yes
33#AuthorizedKeysFile     %h/.ssh/authorized_keys
34
35# Don't read the user's ~/.rhosts and ~/.shosts files
36IgnoreRhosts yes
37# For this to work you will also need host keys in /etc/ssh_known_hosts
38RhostsRSAAuthentication no
39# similar for protocol version 2
40HostbasedAuthentication no
41# Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication
42#IgnoreUserKnownHosts yes
43
44# To enable empty passwords, change to yes (NOT RECOMMENDED)
45PermitEmptyPasswords no
46
47# Change to yes to enable challenge-response passwords (beware issues with
48# some PAM modules and threads)
49ChallengeResponseAuthentication no
50
51# Change to no to disable tunnelled clear text passwords
52#PasswordAuthentication yes
53
54# Kerberos options
55#KerberosAuthentication no
56#KerberosGetAFSToken no
57#KerberosOrLocalPasswd yes
58#KerberosTicketCleanup yes
59
60# GSSAPI options
61#GSSAPIAuthentication no
62#GSSAPICleanupCredentials yes
63
64X11Forwarding yes
65X11DisplayOffset 10
66PrintMotd no
67PrintLastLog yes
68KeepAlive yes
69#UseLogin no
70
71#MaxStartups 10:30:60
72#Banner /etc/issue.net
73
74# Allow client to pass locale environment variables
75AcceptEnv LANG LC_*
76
77Subsystem sftp /usr/lib/openssh/sftp-server
78
79UsePAM yes
Note: See TracBrowser for help on using the repository browser.