[Bug 3813] New: "at" port filter in authorized_keys

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Wed Apr 16 23:06:54 AEST 2025


https://bugzilla.mindrot.org/show_bug.cgi?id=3813

            Bug ID: 3813
           Summary: "at" port filter in authorized_keys
           Product: Portable OpenSSH
           Version: 10.0p1
          Hardware: Other
                OS: Linux
            Status: NEW
          Severity: enhancement
          Priority: P5
         Component: sshd
          Assignee: unassigned-bugs at mindrot.org
          Reporter: info at xn--whnlich-90a.de

The authorized_key file can be used to restrict access for users. The
“from” option binds the incoming user to a client IP. I would like to
extend this. Please add an “at” filter that only allows incoming users
(commands) on a specific server port. This would make it possible to
set up targeted firewall rules. Also fail2ban could be set to this.

Example: Port 22 is open as a decoy, while admin is only allowed on
port 10341.


Translated with DeepL.com (free version)

-- 
You are receiving this mail because:
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list