Hacker News new | past | comments | ask | show | jobs | submit login

Not every sshd is configured to allow port forwarding. In fact, I'd expect that on critical systems this is explicitly forbidden.



It's largely pointless to forbid it because once you have a byte stream (which you obviously do with ssh), you can tunnel whatever you want over it anyway. SSH own docs even point this out; man sshd_config(5):

"Note that disabling TCP forwarding does not improve security unless users are also denied shell access, as they can always install their own forwarders."




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: