Answer the question
In order to leave comments, you need to log in
How to deny a specific user access via SSH when connecting on a specific interface?
Here is a question. There is a server with two interfaces (Ubuntu 14). One looks to the local network the other to the Internet. The server has 2 users admin and user . Worth SFTP. User must have access from the Internet to his folder via SFTP and not have access to the shell. Everything is set up and working fine.
But as a side effect, access from the Internet via ssh and sftp is also available from admin . I would like to close. If you add a line ListenAddress in /etc/ssh/sshd_config indicating the address of the local interface, then access from outside is closed, including for SFTP user , which is not good.
If we formulate the task in short, then: It is required to prohibit
a specific user access via SSH when connecting on a specific interface. Any ideas?
Answer the question
In order to leave comments, you need to log in
Thanks to everyone for the advice, they pushed me to the right decision.
Actually the decision.
Everything is solved by editing the file /etc/ssh/sshd_config
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question