1 |
>> an ssh config setting, in shorewall, or somewhere else? |
2 |
> |
3 |
> You can: |
4 |
> |
5 |
> 1) use pam as described by Mike |
6 |
> |
7 |
> or |
8 |
> |
9 |
> 2) use sshd_config "AllowUsers" |
10 |
|
11 |
Thanks a lot, I went with 'AllowUsers root' in sshd_config since sshd |
12 |
is the only service running on the system. |
13 |
|
14 |
- Grant |
15 |
|
16 |
|
17 |
> or |
18 |
> |
19 |
> 3) What I usually do is, disable pam in ssh so only keys are accepted. Only if |
20 |
> you have the key, you can login remotely. Of course that means you will have |
21 |
> to carry your usb pendrive with you all the time :-) |
22 |
> |
23 |
> Regards, |
24 |
> Norberto |