Hi everybody, I am new to the forum, and I am new as BSD system administrator. I am having a problem with X11 forwarding via ssh through a jail. The configuration is the following.
A FreeBSD 8.1 machine is used as gateway between the outer world and a private local network (all linux boxes). A jail is configured such that users can log in into the jail of the gateway only. Then they can log in into some machines in the local network. Connection is through ssh. No X11 is installed in the FreeBSD machine for security reasons. The following configuration is set in /etc/ssh/sshd_conf
Users would connect via ssh from the outern world into the FreeBSD jail and then into the internal network. ssh works, but X11 is not forwarded, the DISPLAY variable remains unset. X11 applications are not run in the FreeBSD gateway, so it is not strictly necessary. Is X11 necessary for X11 forwarding? Is it possible to forward X11 from the internal network to the outern world without the need to install X11 in the gateway?
Hope I am not missing anything trivial.
A FreeBSD 8.1 machine is used as gateway between the outer world and a private local network (all linux boxes). A jail is configured such that users can log in into the jail of the gateway only. Then they can log in into some machines in the local network. Connection is through ssh. No X11 is installed in the FreeBSD machine for security reasons. The following configuration is set in /etc/ssh/sshd_conf
Code:
AllowTcpForwarding yes
X11Forwarding yes
X11DisplayOffset 10
X11UseLocalhost no
Users would connect via ssh from the outern world into the FreeBSD jail and then into the internal network. ssh works, but X11 is not forwarded, the DISPLAY variable remains unset. X11 applications are not run in the FreeBSD gateway, so it is not strictly necessary. Is X11 necessary for X11 forwarding? Is it possible to forward X11 from the internal network to the outern world without the need to install X11 in the gateway?
Hope I am not missing anything trivial.