aboutsummaryrefslogtreecommitdiff
path: root/sshd_config
diff options
context:
space:
mode:
Diffstat (limited to 'sshd_config')
-rw-r--r--sshd_config33
1 files changed, 33 insertions, 0 deletions
diff --git a/sshd_config b/sshd_config
new file mode 100644
index 0000000..f183761
--- /dev/null
+++ b/sshd_config
@@ -0,0 +1,33 @@
+KexAlgorithms [email protected],ecdh-sha2-nistp521,ecdh-sha2-nistp384,ecdh-sha2-nistp256,diffie-hellman-group-exchange-sha256
+Ciphers [email protected],[email protected],[email protected],aes256-ctr,aes192-ctr,aes128-ctr
+
+StrictModes yes
+PermitRootLogin no
+LoginGraceTime 30
+MaxAuthTries 3
+MaxSessions 5
+MaxStartups 2
+
+AuthorizedKeysFile .ssh/authorized_keys
+HostbasedAuthentication no
+IgnoreRhosts yes
+PermitEmptyPasswords no
+ChallengeResponseAuthentication no
+Compression yes
+PrintMotd no
+UsePAM yes
+
+Subsystem sftp internal-sftp
+AllowTcpForwarding no
+PermitTunnel no
+PermitTTY no
+X11Forwarding no
+
+AllowUsers $NEW_USER
+Match User $NEW_USER # Note: Indentation below is just stylistic
+ AllowTcpForwarding yes
+ PermitTunnel yes
+ PermitTTY yes
+ X11Forwarding yes
+ X11UseLocalhost no