Site Tools


sysadmin:services:jumphost

SSH Jump Host

Overview

The SSH Jump Host provides a host which can be used for remote SSH connections without requiring the use of the campus VPN.

Host URLs

  • fudge.socs.uoguelphh.ca (hostname)
  • portkey.socs.uoguelph.ca (alias)

Configuration Information

Fail2Ban

Fail2Ban is configured to block repeated failed SSH connection attempts to the jump host using the default fail2ban settings. Connections are automatically blocked by the host firewall for 15 minutes before being unblocked.

Homedir NoExec

To increase security and block VSCode from using Portkey as a remote ssh environment, SoCS User home folders have been mounted with the noexec NFS configuration option. This is done through the use of an auto_master_secnet_noexec automount map in AutoFS. This information is configured through the SoCS LDAP servers.

sysadmin/services/jumphost.txt · Last modified: 2024/04/01 16:15 by kjohns23