SSH (port 22) security risks of tunnelling to other services

From: Chris Los (clos@trentu.ca)
Date: Fri Jan 31 2003 - 17:18:53 EST


Hello we are using the commercial variety of SSH (www.ssh.com) (not OpenSSH). If users have access to connect to the tru64unix host on port 22 via their ssh client I'm wonderring what the security risks are of them creating SSH tunnels on the client end to get to other service ports open on the unix host? Is this possible for them to do??? If so, what is the best way to block this kind of sneaky access.

Tru64Unix v4.0F, pk0007

TIA

Chris Los
Computer Services Department
Trent University
748-1011 x1588



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:49:06 EDT