[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Provide mechanism to limit ssh login in Debian Edu?



On Samstag, 22. November 2014, Wolfgang Schweer wrote:
> As the usage of a Debian Edu network is supposed to have a lot of facets
> I guess it would be good to only mention some possibitities in the
> manual and leave the implementation to the local admins.

my point exactly.
 
> With GOsa it's quite simple:
> 
> (1) Create a group like 'sshusers' on the root level
>     (where already other system management related groups like
>     'gosa-admins' show up).
> (2) Add users to the new group 'sshusers'.
> (3) Add  'AllowGroups sshusers' to /etc/ssh/sshd_config
> (4) 'service ssh restart'

that almost reads as if it could be copied to the manual quite diretly, if you 
release this under the GPL2 :) (easiest way to do so would be if you just do 
the edit ;-)


Attachment: signature.asc
Description: This is a digitally signed message part.


Reply to: