[TriLUG] enabling SSH into private network

jonc at nc.rr.com jonc at nc.rr.com
Wed Jan 2 23:46:37 EST 2008


How to skin a cat #3: I use an entry in /etc/xinetd.d to redirect SSH into intenal servers.
This allows me to setup interesting redirection restrictions on incoming IP addresses, number of connections, etc.

Jon Carnes

---- Magnus <magnus at trilug.org> wrote: 
> On Jan 2, 2008, at 10:00 AM, Tommy Williams wrote:
> 
> > I'm not entirely certian of your use case, but have you considered
> > setting up a single entry point into the private network? SSH into one
> > machine that is available through the firewall, providing shell
> > accounts to users so they can then ssh or even telnet (because its now
> > on the private network (and in a secure connection)) into private
> > network machines?
> 
> If you set up a single ssh gateway and install netcat (nc) on it, you  
> can (for all practical purposes) appear to ssh directly from an  
> external client to an internal server.
> 
> -- 
> TriLUG mailing list        : http://www.trilug.org/mailman/listinfo/trilug
> TriLUG Organizational FAQ  : http://trilug.org/faq/
> TriLUG Member Services FAQ : http://members.trilug.org/services_faq/




More information about the TriLUG mailing list