Extra OpenSSH logging for tracing SSH connections and tunnels

Zoltan Fridrich zfridric at redhat.com
Sat Apr 25 00:07:01 AEST 2026


Hello

I have a use-case where I need to be able to trace SSH connections and
tunnels for traceability and security compliance purposes.
More specifically, I need to be able to:
- log every outgoing SSH connection on the client side including user ID
and command details
- log every SSH tunnel on the server side including source, target, ports
and user ID

Would such extra logging be acceptable for inclusion in the upstream code?

I have attached a patch that implements this extra logging.

Regards,
Zoltan
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openssh-extra-logs.patch
Type: text/x-patch
Size: 1466 bytes
Desc: not available
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20260424/e8378a65/attachment.bin>


More information about the openssh-unix-dev mailing list