[BACK]Return to ssh_config.5 CVS log [TXT][DIR] Up to [local] / src / usr.bin / ssh

Diff for /src/usr.bin/ssh/ssh_config.5 between version 1.29.2.1 and 1.29.2.2

version 1.29.2.1, 2004/08/19 04:13:27 version 1.29.2.2, 2005/03/10 17:15:05
Line 63 
Line 63 
 .Pp  .Pp
 For each parameter, the first obtained value  For each parameter, the first obtained value
 will be used.  will be used.
 The configuration files contain sections bracketed by  The configuration files contain sections separated by
 .Dq Host  .Dq Host
 specifications, and that section is only applied for hosts that  specifications, and that section is only applied for hosts that
 match one of the patterns given in the specification.  match one of the patterns given in the specification.
Line 120 
Line 120 
 Valid arguments are  Valid arguments are
 .Dq any ,  .Dq any ,
 .Dq inet  .Dq inet
 (Use IPv4 only) or  (use IPv4 only) or
 .Dq inet6  .Dq inet6
 (Use IPv6 only.)  (use IPv6 only).
 .It Cm BatchMode  .It Cm BatchMode
 If set to  If set to
 .Dq yes ,  .Dq yes ,
Line 359 
Line 359 
 If this option is set to  If this option is set to
 .Dq yes  .Dq yes
 then remote X11 clients will have full access to the original X11 display.  then remote X11 clients will have full access to the original X11 display.
   .Pp
 If this option is set to  If this option is set to
 .Dq no  .Dq no
 then remote X11 clients will be considered untrusted and prevented  then remote X11 clients will be considered untrusted and prevented
 from stealing or tampering with data belonging to trusted X11  from stealing or tampering with data belonging to trusted X11
 clients.  clients.
   Furthermore, the
   .Xr xauth 1
   token used for the session will be set to expire after 20 minutes.
   Remote clients will be refused access after this time.
 .Pp  .Pp
 The default is  The default is
 .Dq no .  .Dq no .
Line 402 
Line 407 
 The default is  The default is
 .Dq no .  .Dq no .
 Note that this option applies to protocol version 2 only.  Note that this option applies to protocol version 2 only.
   .It Cm HashKnownHosts
   Indicates that
   .Nm ssh
   should hash host names and addresses when they are added to
   .Pa $HOME/.ssh/known_hosts .
   These hashed names may be used normally by
   .Nm ssh
   and
   .Nm sshd ,
   but they do not reveal identifying information should the file's contents
   be disclosed.
   The default is
   .Dq no .
   Note that hashing of names and addresses will not be retrospectively applied
   to existing known hosts files, but these may be manually hashed using
   .Xr ssh-keygen 1 .
 .It Cm HostbasedAuthentication  .It Cm HostbasedAuthentication
 Specifies whether to try rhosts based authentication with public key  Specifies whether to try rhosts based authentication with public key
 authentication.  authentication.
Line 467 
Line 488 
 offers many different identities.  offers many different identities.
 The default is  The default is
 .Dq no .  .Dq no .
   .It Cm KbdInteractiveDevices
   Specifies the list of methods to use in keyboard-interactive authentication.
   Multiple method names must be comma-separated.
   The default is to use the server specified list.
 .It Cm LocalForward  .It Cm LocalForward
 Specifies that a TCP/IP port on the local machine be forwarded over  Specifies that a TCP/IP port on the local machine be forwarded over
 the secure channel to the specified host and port from the remote machine.  the secure channel to the specified host and port from the remote machine.
 The first argument must be a port number, and the second must be  The first argument must be a port number, and the second must be
 .Ar host:port .  .Xo
 IPv6 addresses can be specified with an alternative syntax:  .Sm off
 .Ar host/port .  .Oo Ar bind_address : Oc
 Multiple forwardings may be specified, and additional  .Ar host : port
 forwardings can be given on the command line.  .Sm on
   .Xc .
   IPv6 addresses can be specified by enclosing addresses in square brackets or
   by using an alternative syntax:
   .Sm off
   .Xo
   .Op Ar bind_address No /
   .Ar host No / Ar port
   .Xc .
   .Sm on
   Multiple forwardings may be specified, and additional forwardings can be
   given on the command line.
 Only the superuser can forward privileged ports.  Only the superuser can forward privileged ports.
   By default, the local port is bound in accordance with the
   .Cm GatewayPorts
   setting.
   However, an explicit
   .Ar bind_address
   may be used to bind the connection to a specific address.
   The
   .Ar bind_address
   of
   .Dq localhost
   indicates that the listening port be bound for local use only, while an
   empty address or
   .Sq *
   indicates that the port should be available from all interfaces.
 .It Cm LogLevel  .It Cm LogLevel
 Gives the verbosity level that is used when logging messages from  Gives the verbosity level that is used when logging messages from
 .Nm ssh .  .Nm ssh .
Line 583 
Line 633 
 Specifies that a TCP/IP port on the remote machine be forwarded over  Specifies that a TCP/IP port on the remote machine be forwarded over
 the secure channel to the specified host and port from the local machine.  the secure channel to the specified host and port from the local machine.
 The first argument must be a port number, and the second must be  The first argument must be a port number, and the second must be
 .Ar host:port .  .Xo
 IPv6 addresses can be specified with an alternative syntax:  .Sm off
 .Ar host/port .  .Oo Ar bind_address : Oc
   .Ar host : port
   .Sm on
   .Xc .
   IPv6 addresses can be specified by enclosing any addresses in square brackets
   or by using the alternative syntax:
   .Sm off
   .Xo
   .Op Ar bind_address No /
   .Ar host No / Ar port
   .Xc .
   .Sm on
 Multiple forwardings may be specified, and additional  Multiple forwardings may be specified, and additional
 forwardings can be given on the command line.  forwardings can be given on the command line.
 Only the superuser can forward privileged ports.  Only the superuser can forward privileged ports.
   .Pp
   If the
   .Ar bind_address
   is not specified, the default is to only bind to loopback addresses.
   If the
   .Ar bind_address
   is
   .Ql *
   or an empty string, then the forwarding is requested to listen on all
   interfaces.
   Specifying a remote
   .Ar bind_address
   will only succeed if the server's
   .Cm GatewayPorts
   option is enabled (see
   .Xr sshd_config 5 ) .
 .It Cm RhostsRSAAuthentication  .It Cm RhostsRSAAuthentication
 Specifies whether to try rhosts based authentication with RSA host  Specifies whether to try rhosts based authentication with RSA host
 authentication.  authentication.

Legend:
Removed from v.1.29.2.1  
changed lines
  Added in v.1.29.2.2