| # $OpenBSD: sshd_config,v 1.32 2001/02/06 22:07:50 deraadt Exp $ |
| |
| # This is the sshd server system-wide configuration file. See sshd(8) |
| # for more information. |
| |
| Port 22 |
| #Protocol 2,1 |
| #ListenAddress 0.0.0.0 |
| #ListenAddress :: |
| HostKey /etc/ssh_host_key |
| HostKey /etc/ssh_host_dsa_key |
| #HostKey /etc/ssh_host_rsa_key |
| ServerKeyBits 768 |
| LoginGraceTime 600 |
| KeyRegenerationInterval 3600 |
| PermitRootLogin yes |
| # |
| # Don't read ~/.rhosts and ~/.shosts files |
| IgnoreRhosts yes |
| # Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication |
| #IgnoreUserKnownHosts yes |
| StrictModes yes |
| X11Forwarding no |
| X11DisplayOffset 10 |
| PrintMotd yes |
| KeepAlive yes |
| |
| # Logging |
| SyslogFacility AUTH |
| LogLevel INFO |
| #obsoletes QuietMode and FascistLogging |
| |
| RhostsAuthentication no |
| # |
| # For this to work you will also need host keys in /etc/ssh_known_hosts |
| RhostsRSAAuthentication no |
| # |
| RSAAuthentication yes |
| |
| # To disable tunneled clear text passwords, change to no here! |
| PasswordAuthentication yes |
| PermitEmptyPasswords no |
| |
| # Comment to enable s/key passwords or PAM interactive authentication |
| # NB. Neither of these are compiled in by default. Please read the |
| # notes in the sshd(8) manpage before enabling this on a PAM system. |
| ChallengeResponseAuthentication no |
| |
| # To change Kerberos options |
| #KerberosAuthentication no |
| #KerberosOrLocalPasswd yes |
| #AFSTokenPassing no |
| #KerberosTicketCleanup no |
| |
| # Kerberos TGT Passing does only work with the AFS kaserver |
| #KerberosTgtPassing yes |
| |
| #CheckMail yes |
| #UseLogin no |
| |
| #MaxStartups 10:30:60 |
| #Banner /etc/issue.net |
| #ReverseMappingCheck yes |
| |
| Subsystem sftp /usr/libexec/sftp-server |