Diferencias
Muestra las diferencias entre dos versiones de la página.
| Próxima revisión | Revisión previa | ||
| rsh_por_ssh [2024/05/28 16:13] – creado - editor externo 127.0.0.1 | rsh_por_ssh [2025/05/30 13:03] (actual) – [Referencias] kasandra | ||
|---|---|---|---|
| Línea 76: | Línea 76: | ||
| ============================================================== | ============================================================== | ||
| - | |||
| - | =========================================================================\\ | ||
| - | Anexo / | ||
| ========================================================================= | ========================================================================= | ||
| + | Anexo / | ||
| + | ========================================================================= | ||
| + | |||
| - | \\ | + | # $OpenBSD: ssh_config, |
| - | #\t$OpenBSD: ssh_config, | + | |
| - | # This is the ssh client system-wide configuration file. See\\ | + | # This is the ssh client system-wide configuration file. See |
| - | # ssh_config(5) for more information. This file provides defaults for\\ | + | # ssh_config(5) for more information. |
| - | # users, and the values can be changed in per-user configuration files\\ | + | # users, and the values can be changed in per-user configuration files |
| # or on the command line. | # or on the command line. | ||
| - | # Configuration data is parsed as follows:\\ | + | # Configuration data is parsed as follows: |
| - | # 1. command line options\\ | + | # 1. command line options |
| - | # 2. user-specific file\\ | + | # 2. user-specific file |
| - | # 3. system-wide file\\ | + | # 3. system-wide file |
| - | # Any configuration value is only changed the first time it is set.\\ | + | # Any configuration value is only changed the first time it is set. |
| - | # Thus, host-specific definitions should be at the beginning of the\\ | + | # Thus, host-specific definitions should be at the beginning of the |
| # configuration file, and defaults at the end. | # configuration file, and defaults at the end. | ||
| # Site-wide defaults for various options | # Site-wide defaults for various options | ||
| - | # Host 10_consejos_para_la_resolucion_de_problemas.html acta_de_constitucion_interna_del_proyecto.html active_directory.html administrar_servidores_con_ipmi.html admin_rpms_con_yum.html albasoftware_libre_de_gestion_educativa.html alta_disponibilidad_de_conexion_a_internet.html ansible_administracion_centralizada_de_servidores.html anti_virusanti_spam_y_hardening_de_correo2024.html anti_virusanti_spam_y_hardening_de_correo.html apache2_mod_security.html apacheservidor_de_www.html aplicativos_usando_ldap.html autoconf.html aws_amazon_ec2.html aws_amazon_lambda.html bacula_backup2024.html bacula_backup.html bandwidthd.html bind_dns.html bonding.html cacti.html cambio_contrasena_ldap_ad_por_web.html cambios_recientes.html caracteres_octal_hexa_unicode_html.html centos_sobre_hyperv.html cfengine.html chumne_administrador_de_licencias.html ciclo_de_pruebas_orfeo.html cluster_con_haproxy.html cluster_ldap.html colaborador_del_mes.html comision_de_proyectos_obsoleto.html como_desplegar_remoto_con_un_tunel_ssh.html como_hacer_manual_de_funciones.html como_instalar_spoon.html como_limpiar_cache_dns.html como_publicar_docs.html como_reportar_spam.html como_se_implementa_orfeo_sgd.html compensatorios_obsoleto.html condiciones_generales_de_contrato_de_soporte_v14.html configuracion_de_tomcat_como_modulo_de_apache.html configuracion_de_x_lite_cliente_sip.html configuracion_pidgin.html configuracion_planta_telefonica_voip.html configurar_redes.html consola_serial.html consul_open_participation_ruby.html controlador_de_dominio_secundario_samba4.html convertir_pdf_a_a_pdf_plano.html copiar_disco_por_la_red.html cpanel.html crack_de_wep_con_aircrack_ng.html creacion_servidor_codema.html creacion_usuario_postgres_solo_para_consultas.html crear_instalador_de_windows_facil_con_nsis.html crear_instancias_de_orfeong.html crear_paquetes_deb_y_rpm.html crear_repositorios_de_paquetes_deb_y_rpm.html cuestionario_de_severidad.html cups.html cygwn.html dd_wrt.html declaracion_de_trabajo_sow.html deploy_instancia_de_orfeo_express_5x_en_amazon.html deploy_instancia_de_orfeo_express_6x_en_amazon.html descargar_pagina_web_recursivo.html deshabilite_ipv6.html dhcp_multiples_vlans.html dhcp_server.html dhcp_y_dns_dinamico.html directrices_de_manejo_de_tiquetes_en_mesa_de_ayuda_glpi.html docker.html documentacion_de_codigo.html documentos_de_implementacion_de_orfeo_5x.html documentos_estandar_control_proyectos_desarrollo.html dotproject.html drbd.html drp_plan_de_recuperacion_de_desastres.html dsl_personalizacion.html egroupware_ex_phpgw.html ejabberd.html elastix.html enigmail.html enlightenment.html entidad_de_certificacion_a_mano.html entidad_de_certificacion.html entidad_de_certificacion_openca.html envio_y_recepcion_de_fax_en_asterisk.html errores_modelos.html esquema_backup_ikatta.html estandar_bitacora.html estandar_comunicaciones_por_correo_electronico.html estandar_de_archivos_y_directorios.html estandar_de_interfaz_para_proyectos_de_desarrollo.html estandar_de_manejo_de_cronograma.html estandar_de_revision_de_documentos.html estandar_de_soporte_y_mantenimiento_de_skinatech.html estandares_de_comunicacion_de_soporte.html estandar_estacion_de_trabajo_gnu_linux.html estandar_estacion_de_trabajo_ms_windows.html estandar_firma_skina.html estandar_para_interfaz_de_proyectos_de_desarrollo.html estandar_para_la_creacion_de_bases_de_dato.html example_howto.html exim_mta.html extraccion_de_texto_de_documentos.html fail2ban.html falla_laboral.html fax_server.html fink.html firewalld.html firewall_skina_howto.html flujo_de_trabajo_de_proyecto.html flujo_de_trabajo_de_proyecto_trello.html formatos_de_documentos_estandares_de_skinatech.html freenas.html freenx.html freetds.html ftpproxy.html generar_diccionarios_de_datos_en_workbench.html getfacl_y_setfacl.html getmenu2.html gforge.html git_flow.html git.html gitlab.html glassfish.html glpi10.html glpi95.html gnokii.html gnupg_gpg.html google_cloud_platform.html graylog_consolidador_de_bitacoras.html grub.html hacer_modelo_y_o_backup.html hardening_de_linux.html hearbeat_cluster.html hipergate.html hispaniola_firewall_ikatta.html horario_de_trabajo.html how_to_enviar_html_imagenes_con_php5.html howto.html howto_mon.html howto_php_nuke.html huawei_e220.html ibm_aix_snmp_setup_for_nagios.html ibm_db2.html ids_logchecklogwatchtripwireaideetc.html ilo2_e_ilo3.html implementacion_de_oauth2_google_en_orfeo_ng.html implementacion_de_oauth2_microsoft_en_orfeo_ng.html implementacion_glpi.html indicadores_de_gestion.html informes_semanales.html informix_apache_php.html infraestructura_de_operacion.html instalacion_asterisk_en_centos_53.html instalacion_asterisk_en_.html instalacion_de_modelo_de_servidor_con_minilinux.html instalacion_de_modelo_de_servidor.html instalacion_de_pqrs_en_orfeo_sgd.html instalacion_ldap_smb_34_en_debian_lenny.html instalacion_minima_appliance.html instalacion_minima.html instalacion_r_server_& | + | # Host * |
| - | # ForwardAgent no\\ | + | # |
| - | # ForwardX11 no\\ | + | # |
| - | # ForwardX11Trusted yes\\ | + | # |
| - | # RhostsRSAAuthentication yes\\ | + | # |
| - | # RSAAuthentication yes\\ | + | # |
| - | # PasswordAuthentication yes\\ | + | # |
| - | HostbasedAuthentication yes\\ | + | HostbasedAuthentication yes |
| - | # BatchMode no\\ | + | # |
| - | # CheckHostIP yes\\ | + | # |
| - | # AddressFamily any\\ | + | # |
| - | # ConnectTimeout 0\\ | + | # |
| - | # StrictHostKeyChecking ask\\ | + | # |
| - | # IdentityFile ~/ | + | # |
| - | # IdentityFile ~/ | + | # |
| - | # IdentityFile ~/ | + | # |
| - | # Port 22\\ | + | # |
| - | # Protocol 2,1\\ | + | # |
| - | Protocol 2\\ | + | Protocol 2 |
| - | # Cipher 3des\\ | + | # |
| - | # Ciphers aes128-cbc, | + | # |
| - | # EscapeChar ~ | + | # |
| ############# | ############# | ||
| Línea 126: | Línea 125: | ||
| EnableSSHKeysign yes | EnableSSHKeysign yes | ||
| - | \\ | + | |
| - | =========================================================================\\ | + | ========================================================================= |
| - | Anexo / | + | Anexo / |
| ========================================================================= | ========================================================================= | ||
| - | # Package generated configuration file\\ | + | # Package generated configuration file |
| # See the sshd(8) manpage for defails | # See the sshd(8) manpage for defails | ||
| - | # What ports, IPs and protocols we listen for\\ | + | # What ports, IPs and protocols we listen for |
| - | Port 22\\ | + | Port 22 |
| - | # Use these options to restrict which interfaces/ | + | # Use these options to restrict which interfaces/ |
| - | # | + | # |
| - | # | + | # |
| - | Protocol 2\\ | + | Protocol 2 |
| - | # HostKeys for protocol version 2\\ | + | # HostKeys for protocol version 2 |
| - | HostKey / | + | HostKey / |
| - | HostKey / | + | HostKey / |
| - | #Privilege Separation is turned on for security\\ | + | #Privilege Separation is turned on for security |
| UsePrivilegeSeparation yes | UsePrivilegeSeparation yes | ||
| - | # ...but breaks Pam auth via kbdint, so we have to turn it off\\ | + | # ...but breaks Pam auth via kbdint, so we have to turn it off |
| - | # Use PAM authentication via keyboard-interactive so PAM modules can\\ | + | # Use PAM authentication via keyboard-interactive so PAM modules can |
| - | # properly interface with the user (off due to PrivSep)\\ | + | # properly interface with the user (off due to PrivSep) |
| - | # | + | # |
| - | # Lifetime and size of ephemeral version 1 server key\\ | + | # Lifetime and size of ephemeral version 1 server key |
| - | KeyRegenerationInterval 3600\\ | + | KeyRegenerationInterval 3600 |
| ServerKeyBits 768 | ServerKeyBits 768 | ||
| - | # Logging\\ | + | # Logging |
| - | SyslogFacility AUTH\\ | + | SyslogFacility AUTH |
| LogLevel INFO | LogLevel INFO | ||
| - | # Authentication: | + | # Authentication: |
| - | LoginGraceTime 600\\ | + | LoginGraceTime 600 |
| - | PermitRootLogin no\\ | + | PermitRootLogin no |
| StrictModes yes | StrictModes yes | ||
| - | RSAAuthentication yes\\ | + | RSAAuthentication yes |
| - | PubkeyAuthentication yes\\ | + | PubkeyAuthentication yes |
| - | # | + | # |
| - | # rhosts authentication should not be used\\ | + | # rhosts authentication should not be used |
| - | # | + | # |
| - | # Don't read the user's ~/.rhosts and ~/.shosts files\\ | + | # Don't read the user's ~/.rhosts and ~/.shosts files |
| - | IgnoreRhosts no\\ | + | IgnoreRhosts no |
| - | # For this to work you will also need host keys in / | + | # For this to work you will also need host keys in / |
| - | RhostsRSAAuthentication no\\ | + | RhostsRSAAuthentication no |
| - | # similar for protocol version 2\\ | + | # similar for protocol version 2 |
| - | HostbasedAuthentication yes\\ | + | HostbasedAuthentication yes |
| - | # Uncomment if you don't trust ~/ | + | # Uncomment if you don't trust ~/ |
| # | # | ||
| - | # To enable empty passwords, change to yes (NOT RECOMMENDED)\\ | + | # To enable empty passwords, change to yes (NOT RECOMMENDED) |
| PermitEmptyPasswords no | PermitEmptyPasswords no | ||
| - | # Uncomment to disable s/key passwords\\ | + | # Uncomment to disable s/key passwords |
| # | # | ||
| - | # To disable tunneled clear text passwords, change to no here!\\ | + | # To disable tunneled clear text passwords, change to no here! |
| PasswordAuthentication yes | PasswordAuthentication yes | ||
| - | \\ | + | |
| - | # To change Kerberos options\\ | + | # To change Kerberos options |
| - | # | + | # |
| - | # | + | # |
| - | # | + | # |
| # | # | ||
| - | # Kerberos TGT Passing does only work with the AFS kaserver\\ | + | # Kerberos TGT Passing does only work with the AFS kaserver |
| # | # | ||
| - | X11Forwarding no\\ | + | X11Forwarding no |
| - | X11DisplayOffset 10\\ | + | X11DisplayOffset 10 |
| - | PrintMotd no\\ | + | PrintMotd no |
| - | # | + | # |
| - | KeepAlive yes\\ | + | KeepAlive yes |
| #UseLogin no | #UseLogin no | ||
| - | # | + | # |
| - | #Banner / | + | #Banner / |
| # | # | ||
| - | Subsystem\tsftp\t/ | + | Subsystem |
| - | \\ | ||
| UsePAM yes | UsePAM yes | ||
| - | =========================================================================\\ | + | ========================================================================= |
| - | Anexo / | + | Anexo / |
| ========================================================================= | ========================================================================= | ||
| - | zion.skina.com.co\\ | + | zion.skina.com.co |
| babylon.skina.com.co | babylon.skina.com.co | ||
| - | \\ | + | |
| - | =========================================================================\\ | + | ========================================================================= |
| - | Anexo $HOME/ | + | Anexo $HOME/ |
| ========================================================================= | ========================================================================= | ||
| - | zion.skina.com.co demo\\ | + | zion.skina.com.co demo |
| - | babylon.skina.com.co demo\\ | + | babylon.skina.com.co demo |
| - | + | ||
| + | |||
| + | |||
| ========================================================================= | ========================================================================= | ||
| Línea 236: | Línea 238: | ||
| - | |||
| - | ---- | ||
| - | |||
| - | __**Advertencia**__ | ||
| - | |||
| - | Este documento es privado y es de uso exclusivo de sus autores y de SKINA TECH. Cualquier uso sin una autorización escrita es contra la ley de derechos de autor y de propiedad intelectual, | ||