[root@gw01
root]#vi /etc/ssh/sshd_config
# This is ssh server systemwide
configuration file.
Port 22
Protocol 2,1
ListenAddress 0.0.0.0
#ListenAddress ::
# Used secret key for
ssh protocol ver1.3 &
1.5
HostKey /etc/ssh/ssh_host_key
# Used secret key for
ssh protocol ver2.0
HostDSAKey /etc/ssh/ssh_host_dsa_key
ServerKeyBits 768
LoginGraceTime 600
KeyRegenerationInterval
3600
PermitRootLogin no
AllowUsers yasu
#
# Don't read ~/.rhosts
and ~/.shosts files
IgnoreRhosts yes
# Uncomment if you don't
trust ~/.ssh/known_hosts
for RhostsRSAAuthentication
#IgnoreUserKnownHosts
yes
StrictModes yes
X11Forwarding no
X11DisplayOffset 10
PrintMotd yes
KeepAlive yes
# Logging
SyslogFacility AUTH
LogLevel INFO
#obsoletes QuietMode and
FascistLogging
RhostsAuthentication
no
#
# For this to work you
will also need host keys
in /etc/ssh/ssh_known_hosts
RhostsRSAAuthentication
no
#
RSAAuthentication yes
DSAAuthentication yes
# To disable
tunneled clear text passwords,
change to no here!
PasswordAuthentication
yes
PermitEmptyPasswords no
# Uncomment to disable
s/key passwords
#SkeyAuthentication no
# To change
Kerberos options
#KerberosAuthentication
no
#KerberosOrLocalPasswd
yes
#AFSTokenPassing no
#KerberosTicketCleanup
no
# Kerberos
TGT Passing does only
work with the AFS kaserver
#KerberosTgtPassing yes
CheckMail
no
#UseLogin no
Subsystem
sftp /usr/lib/ssh/sftp-server
#MaxStartups 10:30:60 |