X11 forwards and libwrap support

Markus Friedl markus at openbsd.org
Thu Nov 15 03:21:20 EST 2001


On Wed, Nov 14, 2001 at 11:15:28AM -0500, Dan Astoorian wrote:
> On Wed, 14 Nov 2001 10:51:14 EST, Markus Friedl writes:
> > 
> > i think x11 fwd should either listen to the localhost
> > or to all interfaces, but with x11/xauth this does not
> > seem to work if DISPLAY points to localhost.
> > 
> > i'd prefer to have this fixed.
> 
> Remember that many X client implementations "optimize" by reverting to
> the unix domain socket instead of TCP when the display name is
> "localhost" (and/or when the IP address is 127.0.0.1).

yes, and that's broken behaviour.

> If unix domain sockets / loopback connections could be handled reliably,
> an option analagous to GatewayPorts might make sense.

sure and this is what is want. but i'd prefer not to use unix-domain.

> > > Another question: is it requirement that the forwarded X11 port is
> > > bound to * instead of specific interface? 
> > 
> > xauth does not like DISPLAY=localhost:x.y
> 
> Doesn't like it, or just doesn't do what one might expect it to?

that's the same to me if i read my last mail.

it's the stupid unix-domain optimization in X11.



More information about the openssh-unix-dev mailing list