version 1.22, 2005/04/23 16:53:29 |
version 1.32, 2009/02/16 20:53:55 |
|
|
# $NetBSD$ |
# $NetBSD$ |
# $OpenBSD: sshd_config,v 1.70 2004/12/23 23:11:00 djm Exp $ |
# $OpenBSD: sshd_config,v 1.80 2008/07/02 02:24:18 djm Exp $ |
|
|
# This is the sshd server system-wide configuration file. See |
# This is the sshd server system-wide configuration file. See |
# sshd_config(5) for more information. |
# sshd_config(5) for more information. |
|
|
# default value. |
# default value. |
|
|
#Port 22 |
#Port 22 |
#Protocol 2,1 |
|
#AddressFamily any |
#AddressFamily any |
#ListenAddress 0.0.0.0 |
#ListenAddress 0.0.0.0 |
#ListenAddress :: |
#ListenAddress :: |
|
|
|
# Disable legacy (protocol version 1) support in the server for new |
|
# installations. In future the default will change to require explicit |
|
# activation of protocol 1 |
|
Protocol 2 |
|
|
# HostKey for protocol version 1 |
# HostKey for protocol version 1 |
#HostKey /etc/ssh/ssh_host_key |
#HostKey /etc/ssh/ssh_host_key |
# HostKeys for protocol version 2 |
# HostKeys for protocol version 2 |
|
|
|
|
# Lifetime and size of ephemeral version 1 server key |
# Lifetime and size of ephemeral version 1 server key |
#KeyRegenerationInterval 1h |
#KeyRegenerationInterval 1h |
#ServerKeyBits 768 |
#ServerKeyBits 1024 |
|
|
# Logging |
# Logging |
#obsoletes QuietMode and FascistLogging |
# obsoletes QuietMode and FascistLogging |
#SyslogFacility AUTH |
#SyslogFacility AUTH |
#LogLevel INFO |
#LogLevel INFO |
|
|
Line 37 LoginGraceTime 600 |
|
Line 41 LoginGraceTime 600 |
|
#PermitRootLogin no |
#PermitRootLogin no |
#StrictModes yes |
#StrictModes yes |
#MaxAuthTries 6 |
#MaxAuthTries 6 |
|
#MaxSessions 10 |
|
|
#RSAAuthentication yes |
#RSAAuthentication yes |
#PubkeyAuthentication yes |
#PubkeyAuthentication yes |
Line 69 LoginGraceTime 600 |
|
Line 74 LoginGraceTime 600 |
|
#GSSAPIAuthentication no |
#GSSAPIAuthentication no |
#GSSAPICleanupCredentials yes |
#GSSAPICleanupCredentials yes |
|
|
|
#AllowAgentForwarding yes |
#AllowTcpForwarding yes |
#AllowTcpForwarding yes |
#GatewayPorts no |
#GatewayPorts no |
#X11Forwarding no |
#X11Forwarding no |
|
# If you use xorg from pkgsrc then uncomment the following line. |
|
#XAuthLocation /usr/pkg/bin/xauth |
#X11DisplayOffset 10 |
#X11DisplayOffset 10 |
#X11UseLocalhost yes |
#X11UseLocalhost yes |
#PrintMotd yes |
#PrintMotd yes |
Line 81 LoginGraceTime 600 |
|
Line 89 LoginGraceTime 600 |
|
#UsePrivilegeSeparation yes |
#UsePrivilegeSeparation yes |
UsePam yes |
UsePam yes |
#PermitUserEnvironment no |
#PermitUserEnvironment no |
#Compression yes |
#Compression delayed |
#ClientAliveInterval 0 |
#ClientAliveInterval 0 |
#ClientAliveCountMax 3 |
#ClientAliveCountMax 3 |
#UseDNS yes |
#UseDNS yes |
#PidFile /var/run/sshd.pid |
#PidFile /var/run/sshd.pid |
#MaxStartups 10 |
#MaxStartups 10 |
|
#PermitTunnel no |
|
#ChrootDirectory none |
|
|
# no default banner path |
# no default banner path |
#Banner /some/path |
#Banner none |
|
|
# override default of no subsystems |
# override default of no subsystems |
Subsystem sftp /usr/libexec/sftp-server |
Subsystem sftp /usr/libexec/sftp-server |
|
|
|
# the following are HPN related configuration options |
|
# tcp receive buffer polling. disable in non autotuning kernels |
|
#TcpRcvBufPoll yes |
|
|
|
# allow the use of the none cipher |
|
#NoneEnabled no |
|
|
|
# disable hpn performance boosts. |
|
#HPNDisabled no |
|
|
|
# buffer size for hpn to non-hpn connections |
|
#HPNBufferSize 2048 |
|
|
|
|
|
# Example of overriding settings on a per-user basis |
|
#Match User anoncvs |
|
# X11Forwarding no |
|
# AllowTcpForwarding no |
|
# ForceCommand cvs server |