A Docker container with a tailored SSH bastion
MIT License
A Docker container with a tailored SSH server, to act as a bastion host. Some of the things below can be easily tuned to your liking.
mosh
configuration (removed because perl
is a security risk)bash
instead of busybox
to reduce number of commands available (Alpine uses busybox
for everything, and I don't want people to be able to do busybox ls
).ProxyCommand
on some mobile SSH clients and thus need to type ssh foo
again)authorized_keys
inside the container, read-only