sysadmin:services:jumphost
Table of Contents
SSH Jump Host
Overview
The SSH Jump Host provides a host which can be used for remote SSH connections without requiring the use of the campus VPN.
Host URLs
- fudge.socs.uoguelphh.ca (hostname)
- portkey.socs.uoguelph.ca (alias)
Configuration Information
Fail2Ban
Fail2Ban is configured to block repeated failed SSH connection attempts to the jump host using the default fail2ban settings. Connections are automatically blocked by the host firewall for 15 minutes before being unblocked.
Homedir NoExec
To increase security and block VSCode from using Portkey as a remote ssh environment, SoCS User home folders have been mounted with the noexec NFS configuration option. This is done through the use of an auto_master_secnet_noexec automount map in AutoFS. This information is configured through the SoCS LDAP servers.
sysadmin/services/jumphost.txt · Last modified: 2024/04/01 16:15 by kjohns23