Hi there all,

While reading the MAN page on sshd, I see:


AllowTcpForwarding
Specifies whether TCP forwarding is permitted.  The default is
"yes''. Note that disabling TCP forwarding does not improve se-
 curity unless users are also denied shell access, as they can al-
 ways install their own forwarders.

I wish to disable Shell access but keep the File Transfer available.
(As in I only wish to allow my users to transfer files to/from their
respective directories but not have any method of gaining shell access to
perform commands)

Would someone know what options I need to set in ssh_config?

Appreciate your help,


Michael Burbury
GE ecXpress
System Administration
Ph: 61.2.94376511
Fax: 61.2.94374977

Reply via email to