From owner-freebsd-stable@FreeBSD.ORG Fri Nov 28 07:19:05 2003 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0FD1316A4CE for ; Fri, 28 Nov 2003 07:19:05 -0800 (PST) Received: from cthulu.compt.com (cthulu.compt.com [209.115.146.10]) by mx1.FreeBSD.org (Postfix) with ESMTP id DCC0C43FBD for ; Fri, 28 Nov 2003 07:19:03 -0800 (PST) (envelope-from tkonefal@compt.com) Message-ID: <3FC76760.7080104@compt.com> Date: Fri, 28 Nov 2003 10:18:56 -0500 From: Tomasz Konefal MIME-Version: 1.0 To: me@farid-hajji.de References: <1069991237.2759.263.camel@jupiter.acf.aquezada.com> <200311281013.25726.me@farid-hajji.de> In-Reply-To: <200311281013.25726.me@farid-hajji.de> Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit cc: freebsd-stable@freebsd.org cc: "Julian C. Dunn" Subject: Re: help with login.conf session limiting X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 28 Nov 2003 15:19:05 -0000 Farid Hajji wrote: > On Friday 28 November 2003 04:47 am, Julian C. Dunn wrote: >>I wonder if any of you have ever tried to restrict the # of simultaneous >>sessions on a FreeBSD box using login.conf. I'm trying to use the >>'sessionlimit' but it appears to be doing diddly squat. The class in >>question is the following "subshell" one: > > login.conf is only used by login(1), not by sshd. > Try setting UseLogin in /etc/ssh/sshd_config > if you want sshd to use login, and therefore these > settings. Beware: this is NOT recommended. PAM has all sorts of functionality that you may be able to strap on here. examples here: http://www.samag.com/documents/s=1161/sam0009a/0009a.htm cheers, twkonefal -- Tomasz Konefal Systems Administrator Command Post and Transfer Corp. 416-585-9995 x.349