[BACK]Return to sshd_config CVS log [TXT][DIR] Up to [local] / src / usr.bin / ssh

Diff for /src/usr.bin/ssh/sshd_config between version 1.21 and 1.21.2.5

version 1.21, 2000/10/11 20:14:39 version 1.21.2.5, 2001/09/27 00:15:43
Line 1 
Line 1 
 # This is ssh server systemwide configuration file.  #       $OpenBSD$
   
   # This is the sshd server system-wide configuration file.  See sshd(8)
   # for more information.
   
 Port 22  Port 22
 #Protocol 2,1  #Protocol 2,1
 #ListenAddress 0.0.0.0  #ListenAddress 0.0.0.0
 #ListenAddress ::  #ListenAddress ::
   
   # HostKey for protocol version 1
 HostKey /etc/ssh_host_key  HostKey /etc/ssh_host_key
 ServerKeyBits 768  # HostKeys for protocol version 2
 LoginGraceTime 600  HostKey /etc/ssh_host_rsa_key
   HostKey /etc/ssh_host_dsa_key
   
   # Lifetime and size of ephemeral version 1 server key
 KeyRegenerationInterval 3600  KeyRegenerationInterval 3600
 PermitRootLogin yes  ServerKeyBits 768
 #  
 # Don't read ~/.rhosts and ~/.shosts files  
 IgnoreRhosts yes  
 # Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication  
 #IgnoreUserKnownHosts yes  
 StrictModes yes  
 X11Forwarding no  
 X11DisplayOffset 10  
 PrintMotd yes  
 KeepAlive yes  
   
 # Logging  # Logging
 SyslogFacility AUTH  SyslogFacility AUTH
 LogLevel INFO  LogLevel INFO
 #obsoletes QuietMode and FascistLogging  #obsoletes QuietMode and FascistLogging
   
   # Authentication:
   
   LoginGraceTime 600
   PermitRootLogin yes
   StrictModes yes
   
   RSAAuthentication yes
   PubkeyAuthentication yes
   #AuthorizedKeysFile     %h/.ssh/authorized_keys
   
   # rhosts authentication should not be used
 RhostsAuthentication no  RhostsAuthentication no
 #  # Don't read the user's ~/.rhosts and ~/.shosts files
   IgnoreRhosts yes
 # For this to work you will also need host keys in /etc/ssh_known_hosts  # For this to work you will also need host keys in /etc/ssh_known_hosts
 RhostsRSAAuthentication no  RhostsRSAAuthentication no
 #  # similar for protocol version 2
 RSAAuthentication yes  HostbasedAuthentication no
   # Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication
   #IgnoreUserKnownHosts yes
   
 # To disable tunneled clear text passwords, change to no here!  # To disable tunneled clear text passwords, change to no here!
 PasswordAuthentication yes  PasswordAuthentication yes
 PermitEmptyPasswords no  PermitEmptyPasswords no
   
 # Uncomment to disable s/key passwords  # Uncomment to disable s/key passwords
 #SkeyAuthentication no  #ChallengeResponseAuthentication no
 #KbdInteractiveAuthentication yes  
   
 # To change Kerberos options  # To change Kerberos options
 #KerberosAuthentication no  #KerberosAuthentication no
Line 48 
Line 60 
 # Kerberos TGT Passing does only work with the AFS kaserver  # Kerberos TGT Passing does only work with the AFS kaserver
 #KerberosTgtPassing yes  #KerberosTgtPassing yes
   
 #CheckMail yes  X11Forwarding no
   X11DisplayOffset 10
   PrintMotd yes
   #PrintLastLog no
   KeepAlive yes
 #UseLogin no  #UseLogin no
   
 # Uncomment if you want to enable sftp  
 #Subsystem      sftp    /usr/libexec/sftp-server  
 #MaxStartups 10:30:60  #MaxStartups 10:30:60
   #Banner /etc/issue.net
   #ReverseMappingCheck yes
   
   Subsystem       sftp    /usr/libexec/sftp-server

Legend:
Removed from v.1.21  
changed lines
  Added in v.1.21.2.5