summaryrefslogtreecommitdiffstats
path: root/master/ssh-allow-login
diff options
context:
space:
mode:
authorJames <>2021-02-20 18:33:43 +0000
committerJames <>2021-02-20 18:33:43 +0000
commit2839d30c0335f0215405644aaa35bbfd16f062e9 (patch)
treeaf826dab9c7649488bb6fc6d39e5ae6d6c7857a6 /master/ssh-allow-login
downloadmaster-04a21c2-pq-2839d30c0335f0215405644aaa35bbfd16f062e9.tar.gz
master-04a21c2-pq-2839d30c0335f0215405644aaa35bbfd16f062e9.tar.bz2
master-04a21c2-pq-2839d30c0335f0215405644aaa35bbfd16f062e9.zip
everything happyHEADmaster
Diffstat (limited to 'master/ssh-allow-login')
-rw-r--r--master/ssh-allow-login37
1 files changed, 37 insertions, 0 deletions
diff --git a/master/ssh-allow-login b/master/ssh-allow-login
new file mode 100644
index 0000000..6cf7cf7
--- /dev/null
+++ b/master/ssh-allow-login
@@ -0,0 +1,37 @@
+diff --git a/feeds/packages/net/openssh/patches/999-enable-root-and-pwd.patch b/feeds/packages/net/openssh/patches/999-enable-root-and-pwd.patch
+new file mode 100644
+index 0000000..0108bbd
+--- /dev/null
++++ b/feeds/packages/net/openssh/patches/999-enable-root-and-pwd.patch
+@@ -0,0 +1,12 @@
++--- openssh-8.2p1/sshd_config 2020-02-14 00:40:54.000000000 +0000
+++++ openssh-8.2p1/sshd_config 2020-04-11 14:19:11.883636568 +0100
++@@ -29,7 +29,8 @@
++ # Authentication:
++
++ #LoginGraceTime 2m
++-#PermitRootLogin prohibit-password
+++PermitRootLogin yes
+++PermitEmptyPasswords yes
++ #StrictModes yes
++ #MaxAuthTries 6
++ #MaxSessions 10
+diff --git a/package/network/config/firewall/files/firewall.config b/package/network/config/firewall/files/firewall.config
+index 8874e98..d6752d3 100644
+--- a/package/network/config/firewall/files/firewall.config
++++ b/package/network/config/firewall/files/firewall.config
+@@ -27,6 +27,14 @@ config forwarding
+ option src lan
+ option dest wan
+
++config rule
++ option name Allow-SSH
++ option src wan
++ option proto tcp
++ option dest_port 22
++ option target ACCEPT
++ option family ipv4
++
+ # We need to accept udp packets on port 68,
+ # see https://dev.openwrt.org/ticket/4108
+ config rule