SSH (port 22) security risks of tunnelling to other services

From: Chris Los <clos_at_trentu.ca>
Date: Fri, 31 Jan 2003 17:18:53 -0500

Hello we are using the commercial variety of SSH (www.ssh.com) (not OpenSSH). If users have access to connect to the tru64unix host on port 22 via their ssh client I'm wonderring what the security risks are of them creating SSH tunnels on the client end to get to other service ports open on the unix host? Is this possible for them to do??? If so, what is the best way to block this kind of sneaky access.

Tru64Unix v4.0F, pk0007

TIA



Chris Los
Computer Services Department
Trent University
748-1011 x1588
Received on Fri Jan 31 2003 - 22:20:01 NZDT

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:44 NZDT