Dotfiles from time before I knew the word dotfiles, but the name has stuck.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

81 lines
2.2KB

  1. # My SSH config. This does leak existense of some hosts where I have
  2. # access, but they should require SSH key authentication anyway.
  3. Host *
  4. # Path for the control socket.
  5. ControlPath ~/.ssh/sockets/socket-%r@%h:%p
  6. # Multiple sessions over single connection
  7. ControlMaster yes
  8. # Keep connection open in the background even after connection has been
  9. # closed.
  10. ControlPersist yes
  11. ForwardAgent no
  12. ForwardX11 no
  13. # Ensure KnownHosts are unreadable if leaked.
  14. HashKnownHosts yes
  15. LogLevel VERBOSE
  16. Protocol 2
  17. # Always try public key authentication.
  18. PubkeyAuthentication yes
  19. # Send needed environment variables. I don't like setting wildcards
  20. # and LC_ALL is disabled on purpouse.
  21. SendEnv EDITOR LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION TERM TZ
  22. # If the server doesn't reply in three "pings", connection is dead.
  23. # Defaults to 3 anyway, but I add it here for clearity and
  24. # in case it decides to change in the future.
  25. ServerAliveCountMax 3
  26. # "ping" the server every minute.
  27. ServerAliveInterval 60
  28. # OpenSSH 6.8+ - ask all host keys from servers.
  29. # I trust the server admins and ways to identify the keys (DNSSEC,
  30. # manual).
  31. UpdateHostKeys yes
  32. # Workaround CVE-2016-0777 & CVE-0778 on OpenSSH < 7.1p2
  33. UseRoaming no
  34. # Verify SSHFP records. If this is yes, the question is skipped when
  35. # DNSSEC is used, but apparently only "ask" and "no" write known_hosts
  36. # However with "ask" you won't be told whether the zone is signed, so
  37. # I consider "yes" to be the least evil.
  38. VerifyHostKeyDNS yes
  39. Host aur.archlinux.org
  40. User aur
  41. Host ccx_shell
  42. HostName ccx.webprojekty.cz
  43. Port 24022
  44. User mikaela
  45. Host hilla
  46. HostName hilla.kapsi.fi
  47. User mikaela
  48. Host lakka
  49. HostName lakka.kapsi.fi
  50. User mikaela
  51. LocalForward 127.0.0.1:9001 127.0.0.1:30614
  52. Host meetingology
  53. HostName ubottu.com
  54. User meetingology
  55. Host synvaler
  56. AddressFamily inet6
  57. HostName synvaler.mikaela.info
  58. User nemo
  59. Host tezagm
  60. HostName tezagm.mikaela.info
  61. User mikaela