# This is ssh server systemwide configuration file.

Port 22
ListenAddress 0.0.0.0
HostKey _ETCDIR_/ssh_host_key
RandomSeed _ETCDIR_/ssh_random_seed
ServerKeyBits 768
LoginGraceTime 600
KeyRegenerationInterval 3600
PermitRootLogin yes
#
# Don't read ~/.rhosts and ~/.shosts files
IgnoreRhosts yes
StrictModes yes
QuietMode no
X11Forwarding yes
FascistLogging no
PrintMotd yes
KeepAlive yes
SyslogFacility DAEMON
RhostsAuthentication no
#
# For this to work you will also need host keys in _ETCDIR_/ssh_known_hosts
RhostsRSAAuthentication yes
#
# If homedirs are in NFS or AFS you don't want to enable RSAAuthentication
RSAAuthentication no
#
# To disable tunneled clear text passwords, change to no here!
PasswordAuthentication yes
KerberosOrLocalPasswd yes
PermitEmptyPasswords no

# Kerberos TGT Passing does only work with the AFS kaserver
#KerberosTgtPassing yes

# AllowHosts *.our.com friend.other.com
# DenyHosts lowsecurity.theirs.com *.evil.org evil.org
