• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

SSH Key only Login [patch]

Scheduled Pinned Locked Moved Development
8 Posts 7 Posters 6.5k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    Spida
    last edited by Jul 28, 2006, 9:21 PM

    I wrote a patch for it that is intended to do the following things:

    • Disable Login for SSH via Password (Login with SSH-Key is still available, as is Login to the WEBUI via Password)

    • Make that Configurable via the WEBUI (Switch is in the System->advanced section)

    • Make it possible to upload a authorized_keys file for root (Pastebox is in the System->advanced section, too)

    The patch is available here:
    http://www.spida.net/projects/pfsense/

    1 Reply Last reply Reply Quote 0
    • J
      JeGr LAYER 8 Moderator
      last edited by Jul 29, 2006, 12:30 PM

      @devs: Any chance this appearing in head? ;) Would really appreciate it as an advanced security feature. Nice work to Spida btw :)

      Don't forget to upvote 👍 those who kindly offered their time and brainpower to help you!

      If you're interested, I'm available to discuss details of German-speaking paid support (for companies) if needed.

      1 Reply Last reply Reply Quote 0
      • S
        sullrich
        last edited by Jul 29, 2006, 3:33 PM

        It was commited yesterday to HEAD.

        1 Reply Last reply Reply Quote 0
        • J
          JeGr LAYER 8 Moderator
          last edited by Jul 29, 2006, 10:42 PM

          awarded for hero of the month :D

          Don't forget to upvote 👍 those who kindly offered their time and brainpower to help you!

          If you're interested, I'm available to discuss details of German-speaking paid support (for companies) if needed.

          1 Reply Last reply Reply Quote 0
          • B
            buraglio
            last edited by Aug 15, 2006, 5:57 PM

            This is much better than the crappy patch I wrote to do this.  Kudos.

            nb

            https://www.forwardingplane.net/

            1 Reply Last reply Reply Quote 0
            • M
              msatter
              last edited by Nov 13, 2006, 11:31 AM

              Any chance this will be implementedin a future version and I don't want to run the patch on 1.01. I now create an .ssh dir and put my RSA key in the authorized_keys file. Then I edit my /etc/sshd file to only enable RSA login and disable the password login.

              It also would be nice to be able to backup the collected RRD database and to be able to resotore it in the new version.

              Thanks in advance, Marcel

              1 Reply Last reply Reply Quote 0
              • M
                molar
                last edited by Dec 13, 2006, 12:11 PM

                Has this patch been updated for 1.0.1? Thanks.

                1 Reply Last reply Reply Quote 0
                • H
                  hoba
                  last edited by Dec 13, 2006, 8:42 PM

                  This won't appear in before the next MAJOR Version.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                    This community forum collects and processes your personal information.
                    consent.not_received