Admin/Phabricator/ssh/sshd_config.phabricator
author wenzelm
Wed, 25 Sep 2019 20:12:20 +0200
changeset 70758 5094098f5e0c
parent 70750 07673e7cb5e6
permissions -rw-r--r--
clarified sshd setup: standard service on non-standard port 222, special "vcs" service on standard port 22;
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
70750
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     1
# NOTE: You must have OpenSSHD 6.2 or newer; support for AuthorizedKeysCommand
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     2
# was added in this version.
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     3
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     4
# NOTE: Edit these to the correct values for your setup.
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     5
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     6
AuthorizedKeysCommand /usr/local/bin/ssh-hook
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     7
AuthorizedKeysCommandUser vcs
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     8
AllowUsers vcs
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
     9
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    10
# You may need to tweak these options, but mostly they just turn off everything
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    11
# dangerous.
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    12
70758
5094098f5e0c clarified sshd setup: standard service on non-standard port 222, special "vcs" service on standard port 22;
wenzelm
parents: 70750
diff changeset
    13
Port 22
70750
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    14
Protocol 2
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    15
PermitRootLogin no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    16
AllowAgentForwarding no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    17
AllowTcpForwarding no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    18
PrintMotd no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    19
PrintLastLog no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    20
PasswordAuthentication no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    21
ChallengeResponseAuthentication no
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    22
AuthorizedKeysFile none
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    23
07673e7cb5e6 some information about Phabricator server setup;
wenzelm
parents:
diff changeset
    24
PidFile /var/run/sshd-phabricator.pid