view dropbear.8 @ 340:454a34b2dfd1

Fixes from Erik Hovland: cli-authpubkey.c: fix leak of keybuf cli-kex.c: fix leak of fingerprint fp cli-service.c: remove commented out code dropbearkey.c: don't attepmt to free NULL key on failure common-kex.c: only free key if it is initialised keyimport.c: remove dead encrypted-key code don't leak a FILE* loading OpenSSH keys rsa.c, dss.c: check return values for some libtommath functions svr-kex.c: check return value retrieving DH kex mpint svr-tcpfwd.c: fix null-dereference if remote tcp forward request fails tcp-accept.c: don't incorrectly free the tcpinfo var
author Matt Johnston <>
date Fri, 07 Jul 2006 09:17:18 +0000
parents 0e4f225b7e07
children 4bfd22bac1dc
line wrap: on
line source
.TH dropbear 8
dropbear \- lightweight SSH2 server
.B dropbear
[\-FEmwsgjki] [\-b
.I banner\fR] [\-d
.I dsskey\fR] [\-r
.I rsakey\fR] [\-p
.IR port ]
.B dropbear
is a SSH 2 server designed to be small enough to be used in small memory
environments, while still being functional and secure enough for general use.
.B \-b \fIbanner
Display the contents of the file
.I banner
before user login (default: none).
.B \-d \fIdsskey
Use the contents of the file
.I dsskey
for the dss host key (default: /etc/dropbear/dropbear_dss_host_key).
This file is generated with
.BR dropbearkey (8).
.B \-r \fIrsakey
Use the contents of the file
.I rsakey
for the rsa host key (default: /etc/dropbear/dropbear_rsa_host_key).
This file is generated with
.BR dropbearkey (8).
.B \-F
Don't fork into background.
.B \-E
Log to standard error rather than syslog.
.B \-m
Don't display the message of the day on login.
.B \-w
Disallow root logins.
.B \-s
Disable password logins.
.B \-g
Disable password logins for root.
.B \-j
Disable local port forwarding.
.B \-k
Disable remote port forwarding.
.B \-p \fIport
Listen on specified tcp port
.IR port ;
up to 10 can be specified (default 22 if none specified).
.B \-i
Service program mode.
Use this option to run
.B dropbear
under TCP/IP servers like inetd, tcpsvd, or tcpserver.
In program mode the \-F option is implied, and \-p options are ignored.
.B \-P \fIpidfile
Specify a pidfile to create when running as a daemon. If not specified, the 
default is /var/run/
.B \-a
Allow remote hosts to connect to forwarded ports.
Matt Johnston ([email protected]).
Gerrit Pape ([email protected]) wrote this manual page.
dropbearkey(8), dbclient(1)