Feature request: "SetupCommand" invoked before connecting

Helmut Grohne helmut at subdivi.de
Sun Jul 18 09:38:44 EST 2010


Hi,

On Thu, Jul 09, 2009 at 12:03:37AM +0200, Helmut Grohne wrote:
> (I'm not subscribed to the list, so please CC me on reply.)
> 
> I'd like to request adding a feature to OpenSSH:
> 
> Task:
> ~~~~~
> It is quite sometime useful to invoke a program prior to connecting to
> an ssh server. The most common use case will probably be port knocking.
> That is a small program sends certain packets to a server and the server
> reacts to this by unlocking the ssh port, which would be blocked
> otherwise to defend against brute force attacks.

I proposed a SetupCommand earlier and got a few responses. Both Daniel
Kahn Gillmor and Jameson Rollins were in favour of merging my patch.
However the merge did not happen so far. What is keeping you from
merging it?

Damien Miller and Peter Stuge questioned the usefulness. I explained
that, but never got any follow up question. Were my arguments
insufficient?

Helmut


More information about the openssh-unix-dev mailing list