Re: OpenSSH vpn without using remote root user

2008-01-28 Thread Lars Noodén
Claudio Jeker wrote: > Only root can open /dev/tun, this is enforced in the code. You would need > to patch the code as well (see tunopen()'s suser() call). A compromise might be to do that via sudo. Or, a bit tighter, have a script do it and call that via sudo. However, that still requires roo

Re: OpenSSH vpn without using remote root user

2008-01-26 Thread Claudio Jeker
On Sat, Jan 26, 2008 at 09:42:14PM +1100, Dave Harrison wrote: > Hey all, > > I've been trying to see if it's possible to setup SSH based vpn's > using user accounts on the remote end. While I don't think it says > anywhere explicitly that it's _not_ possible, I haven't found any > references so

OpenSSH vpn without using remote root user

2008-01-26 Thread Dave Harrison
Hey all, I've been trying to see if it's possible to setup SSH based vpn's using user accounts on the remote end. While I don't think it says anywhere explicitly that it's _not_ possible, I haven't found any references so far of people doing it successfully ;-) I've gone over the mailing list se