Details
-
New Feature
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
0.3.0
-
None
Description
Most users of Gerrit Code Review want to block all port forwarding to the internal SSH daemon as it might permit external end users connecting to the daemon to open arbitrary network connections within the server's otherwise firewalled network.
Add an interface which permits the process which created and configured the SshServer to make TCP/IP forwarding decisions, and block requests it does not want to permit.