The following tables list the keywords and their default values, if any. The keywords are in alphabetical order. The location of keywords on the client is the ssh_config file. Keywords that apply to the server are in the sshd_config file. Some keywords are set in both files. If the keyword applies to only one protocol version, the version is listed.
Table 20–1 Keywords in Solaris Secure Shell Configuration Files (A to Escape)
Keyword |
Default Value |
Location |
Protocol |
---|---|---|---|
No default. |
Server | ||
yes |
Server | ||
No default. |
Server | ||
~/.ssh/authorized_keys |
Server | ||
/etc/issue |
Server | ||
no |
Client | ||
No default. |
Client | ||
yes |
Client | ||
Client |
v1 |
||
Both |
v2 |
||
No default. |
Client | ||
0 |
Server |
v2 |
|
3 |
Server |
v2 |
|
yes |
Both | ||
No default. |
Client | ||
1 |
Client | ||
No default. |
Server | ||
No default. |
Server | ||
No default. |
Client | ||
~ |
Client |
Table 20–2 Keywords in Solaris Secure Shell Configuration Files (Fall to Local)
Keyword |
Default Value |
Location |
Protocol |
---|---|---|---|
no |
Client | ||
no |
Client | ||
no |
Client | ||
no |
Both | ||
/etc/ssh/ssh_known_hosts |
Client | ||
yes |
Both |
v2 |
|
no |
Client |
v2 |
|
yes |
Both |
v2 |
|
no |
Client |
v2 |
|
* For more information, see Host-Specific Parameters in Solaris Secure Shell. |
Client | ||
no |
Both |
v2 |
|
no |
Server |
v2 |
|
/etc/ssh/ssh_host_key |
Server |
v1 |
|
HostKey |
/etc/ssh/host_rsa_key, /etc/ssh/host_dsa_key |
Server |
v2 |
ssh-rsa, ssh-dss |
Client |
v2 |
|
No default. |
Client |
v2 |
|
~/.ssh/identity |
Client |
v1 |
|
IdentityFile |
~/.ssh/id_dsa, ~/.ssh/id_rsa |
Client |
v2 |
yes |
Server | ||
yes |
Server | ||
yes |
Both | ||
yes |
Both | ||
3600 (seconds) |
Server | ||
No default. |
Server | ||
No default. |
Client |
Table 20–3 Keywords in Solaris Secure Shell Configuration Files (Login to R)
Keyword |
Default Value |
Location |
Protocol |
---|---|---|---|
600 (seconds) |
Server | ||
info |
Both | ||
yes |
Server | ||
Both |
v2 |
||
6 |
Server | ||
3 |
Server | ||
10:30:60 |
Server | ||
no |
Client | ||
3 |
Client | ||
yes |
Server |
v2 |
|
yes |
Both | ||
no |
Server | ||
no |
Server | ||
no |
Server | ||
gssapi-keyex, gssapi-with-mic, hostbased, publickey, keyboard-interactive, password |
Client |
v2 |
|
22 |
Both | ||
no |
Server | ||
2 |
Both | ||
No default. |
Client | ||
yes |
Both |
v2 |
|
No default. |
Client | ||
no |
Both |
v1 |
|
no |
Both |
v1 |
|
no |
Both |
v1 |
Table 20–4 Keywords in Solaris Secure Shell Configuration Files (S to X)
Keyword |
Default Value |
Location |
Protocol |
---|---|---|---|
768 |
Server | ||
ask |
Client | ||
yes |
Server | ||
sftp /usr/lib/ssh/sftp-server |
Server | ||
auth |
Server | ||
no Deprecated and ignored. |
Server | ||
yes |
Both |
v2 |
|
No default. |
Client | ||
~/.ssh/known_hosts |
Client | ||
no |
Server | ||
yes |
Server | ||
10 |
Server | ||
yes |
Server | ||
/usr/openwin/bin/xauth |
Both |
If it is useful to have different Solaris Secure Shell characteristics for different local hosts, the administrator can define separate sets of parameters in the /etc/ssh/ssh_config file to be applied according to host or regular expression. This task is done by grouping entries in the file by Host keyword. If the Host keyword is not used, the entries in the client configuration file apply to whichever local host a user is working on.
When the following Solaris Secure Shell keywords are not set in the sshd_config file, they get their value from equivalent entries in the /etc/default/login file:
Entry in /etc/default/login |
Keyword and Value in sshd_config |
---|---|
PermitRootLogin=without-password |
|
#CONSOLE=* |
PermitRootLogin=yes |
PermitEmptyPasswords=no |
|
PASSREQ=NO |
PermitEmptyPasswords=yes |
#PASSREQ |
PermitEmptyPasswords=no |
LoginGraceTime=secs |
|
#TIMEOUT |
LoginGraceTime=300 |
Apply only to password and keyboard-interactive authentication methods. |
When the following variables are set by the initialization scripts from the user's login shell, the sshd daemon uses those values. When the variables are not set, the daemon uses the default value.
Controls the setting of the TZ environment variable. When not set, the sshd daemon uses value of TZ when the daemon was started.
Controls the setting of the SHELL environment variable. The default is ALTSHELL=YES, where the sshd daemon uses the value of the user's shell. When ALTSHELL=NO, the SHELL value is not set.
Controls the setting of the PATH environment variable. When the value is not set, the default path is /usr/bin.
Controls the setting of the PATH environment variable for root. When the value is not set, the default path is /usr/sbin:/usr/bin.
For more information, see the login(1) and sshd(1M) man pages.