Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

RE: SSH Gateway

From: Temp <temp(at)eguesswork.co.uk>
Date: Thu Nov 14 2002 - 17:59:04 EST


Evan,

I guess you're running your script from the user's .profile, .login or .cshrc? If instead you make your script the user's default shell in
/etc/passwd, then if the user breaks the second ssh connection it will
just log the user off the gateway system. To be clean your script should be something like:-

#!/bin/sh
ssh .......
exit 0

On some UNIX systems you may need to add your shell script to
/etc/shells in order for 'login' to recognise it as a valid default
login shell. Look at the man page for 'login' as this config file is sometimes known by a different name on some systems.

Regards

Chris Macneill

-----Original Message-----
From: evan@bcaresearch.com [mailto:evan@bcaresearch.com] Sent: 12 November 2002 17:46
To: secureshell@securityfocus.com
Subject: SSH Gateway

Is there a way that I can automatically forward certain ssh user connection to another ssh box without giving the users access to the gateway machine?
Any ideas would be welcome.
As it stands now I am currently running a script when they log on that automatically connects then to the next box. The problem being that they can simply break the ssh connection and get shell access. Evan Xinos
System Support Analyst Received on Sun Nov 17 07:41:39 2002

Do you need help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:51 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library