From 49923a6371b221f541a74cff3968b44cde53cb0a Mon Sep 17 00:00:00 2001 From: Wolodja Wentland Date: Wed, 4 May 2016 09:47:48 +0200 Subject: [PATCH] Drop overly opinionated ssh_config defaults This set of options reflect the ssh_config options that are set by default on Debian. The way this was set before has the potential to break exisisting setups that rely on "normal" defaults, rather than the rather opinionated ones that are now being shipped with this formula. --- openssh/defaults.yaml | 23 +++-------------------- 1 file changed, 3 insertions(+), 20 deletions(-) diff --git a/openssh/defaults.yaml b/openssh/defaults.yaml index aaa1bcb..02862d3 100644 --- a/openssh/defaults.yaml +++ b/openssh/defaults.yaml @@ -11,24 +11,7 @@ openssh: ssh_config: Hosts: '*': - ForwardAgent: no - ForwardX11: no - RhostsRSAAuthentication: no - RSAAuthentication: yes - PasswordAuthentication: yes - HostbasedAuthentication: no - GSSAPIAuthentication: no + SendEnv: LANG LC_* + HashKnownHosts: yes + GSSAPIAuthentication: yes GSSAPIDelegateCredentials: no - BatchMode: no - CheckHostIP: yes - AddressFamily: any - ConnectTimeout: 0 - StrictHostKeyChecking: ask - IdentityFile: "~/.ssh/id_rsa" - Port: 22 - Protocol: 2 - Cipher: 3des - Tunnel: no - TunnelDevice: "any:any" - PermitLocalCommand: no - VisualHostKey: no