[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#237533: AllowTcpForwarding no should be default



Florian Effenberger wrote:

It becomes a big risk when someone has set up a firewall, but a user can
access them via SSH Port Forwarding. Most people don't know about this.

Maybe at least print out an information when debconf occurs, warning the
user of the Port Forwarding risks?

I wholeheartedly agree. I sincerely wish I knew more about debconf, or I would work this in and upload a sample somewhere.

I still think allowing the user to choose between different security configurations would be good... you could set several other options like PermitRootLogin, etc...

-Roger




Reply to: