OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
NFR Wizards Archive: Re: SSH question

Re: SSH question


-= ArkanoiD =- (arkmpak.convey.ru)
Tue, 14 Apr 98 23:21:47 +0300


nuqneH,

=> Date: Mon, 13 Apr 1998 15:58:14 -0400
=> From: Michael Lerperger <mlerpwhoi.edu>
=> To: -= ArkanoiD =- <arkmpak.convey.ru>
=> Cc: firewall-wizardsnfr.net
=> Subject: Re: SSH question

[dd]

Yep, i know sshd does support x11 forwarding. I mean i did not find proper
way to proxy it when i do ssh-to-telnet translation. Actually i do know what
to do but i had no time to implement that.

=> Cut and paste from the sshd man page:
=>
=> X11Forwarding
=> Specifies whether X11 forwarding is permitted. The
=> default is "yes". Note that disabling X11 forward-
=> ing does not improve security in any way, as users
=> can always install their own forwarders.
=>
=> -Michael
=>
=>
=> > Hmm, i translate incoming ssh to telnet on internal network and everything
=> > other than terminal connection itself is disabled. Even X (although i did
=> > not solve X over ssh proxying problem the proper way)
=> >
=>
=>

---
                                       _ _ _ _ _ _ _
   Must be a visit from the dead.. _| o |_ | | _|| | / _||_| |_ |_ |_
   CU in Hell .......... Arkan#iD |_ o _||_| _||_| / _| | o |_||_||_|



This archive was generated by hypermail 2.0b3 on Sat Jul 17 1999 - 07:10:47 CDT