Add AuthorizedKeysCommand supportmaster
@@ -81,6 +81,8 @@ | |||
{{ option_default_uncommented('RSAAuthentication', 'yes') }} | |||
{{ option_default_uncommented('PubkeyAuthentication', 'yes') }} | |||
{{ option('AuthorizedKeysFile', '%h/.ssh/authorized_keys') }} | |||
{{ option('AuthorizedKeysCommand', 'none') }} | |||
{{ option('AuthorizedKeysCommandUser', 'nobody') }} | |||
# Don't read the user's ~/.rhosts and ~/.shosts files | |||
{{ option_default_uncommented('IgnoreRhosts', 'yes') }} |
@@ -21,6 +21,8 @@ sshd_config: | |||
MaxSessions: 10 | |||
RSAAuthentication: 'yes' | |||
PubkeyAuthentication: 'yes' | |||
AuthorizedKeysCommand: '/usr/bin/sss_ssh_authorizedkeys' | |||
AuthorizedKeysCommandUser: 'nobody' | |||
IgnoreRhosts: 'yes' | |||
RhostsRSAAuthentication: 'no' | |||
HostbasedAuthentication: 'no' |