Portál AbcLinuxu, 14. května 2025 01:31
This keyword can be followed by a list of user name patterns, separated by spaces. If specified, login is allowed only for user names that match one of the patterns. '*' and '?' can be used as wildcards in the patterns. Only user names are valid; a numerical user ID is not recognized. By default, login is allowed for all users. If the pattern takes the form USER@HOST then USER and HOST are separately checked, restricting logins to particular users from particular hosts.
/etc/hosts.allow
a /etc/hosts.deny
. Konkretnehosts.deny: sshd: ALLa
hosts.allow: sshd: povolena_IP
tcpd
, ne?
hosts_{deny,allow}
byly puvodne vytvoreny pro rizeni pristupu sluzeb spoustenych pres tcpd
wrapper, ale nektere dalsi sluzby spoustene primo (vcetne sshd
) je take pouzivaji.
man hosts.allow
podíval do man sshd
, zjistil bych to taky…
sshd(8)
, sekce AUTHORIZED_KEYS FILE FORMAT, konkrétně vás bude zajímat parametr from
.
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.