diff options
author | Cecil Hugh Watson <knoppmyth@gmail.com> | 2009-02-28 05:44:42 (GMT) |
---|---|---|
committer | Cecil Hugh Watson <knoppmyth@gmail.com> | 2009-02-28 05:44:42 (GMT) |
commit | c00e83b16e3dd048c2396b57531a7cec40189a39 (patch) | |
tree | 06cfc43b4e47d248be6082ace89d94337b7dbe3a /abs/core-testing/openssh/sshd.patch | |
parent | d089f6a6e210a4b4dfbcb435c94200171c28423e (diff) | |
download | linhes_pkgbuild-c00e83b16e3dd048c2396b57531a7cec40189a39.zip linhes_pkgbuild-c00e83b16e3dd048c2396b57531a7cec40189a39.tar.gz linhes_pkgbuild-c00e83b16e3dd048c2396b57531a7cec40189a39.tar.bz2 |
Really protect users from themselves.
Diffstat (limited to 'abs/core-testing/openssh/sshd.patch')
-rw-r--r-- | abs/core-testing/openssh/sshd.patch | 35 |
1 files changed, 35 insertions, 0 deletions
diff --git a/abs/core-testing/openssh/sshd.patch b/abs/core-testing/openssh/sshd.patch new file mode 100644 index 0000000..e883a4c --- /dev/null +++ b/abs/core-testing/openssh/sshd.patch @@ -0,0 +1,35 @@ +diff -ruaN openssh-5.1p1.orig/sshd_config openssh-5.1p1/sshd_config +--- openssh-5.1p1.orig/sshd_config 2008-07-02 12:35:43.000000000 +0000 ++++ openssh-5.1p1/sshd_config 2009-02-28 05:40:09.000000000 +0000 +@@ -38,14 +38,14 @@ + # Authentication: + + #LoginGraceTime 2m +-#PermitRootLogin yes ++PermitRootLogin no + #StrictModes yes + #MaxAuthTries 6 + #MaxSessions 10 + + #RSAAuthentication yes +-#PubkeyAuthentication yes +-#AuthorizedKeysFile .ssh/authorized_keys ++PubkeyAuthentication yes ++AuthorizedKeysFile .ssh/authorized_keys + + # For this to work you will also need host keys in /etc/ssh/ssh_known_hosts + #RhostsRSAAuthentication no +@@ -88,7 +88,7 @@ + #AllowAgentForwarding yes + #AllowTcpForwarding yes + #GatewayPorts no +-#X11Forwarding no ++X11Forwarding yes + #X11DisplayOffset 10 + #X11UseLocalhost yes + #PrintMotd yes +@@ -117,3 +117,4 @@ + # X11Forwarding no + # AllowTcpForwarding no + # ForceCommand cvs server ++DenyUsers mythtv |