[Solved for me]Distinguishing SSH and SFTP (for QoS purposes)

Hi there,
I'm thinking about shutting down the FTP on my homeserver and use SFTP instead. There is only one thing I couldn't solve so far: In my router I have QoS-rules that make FTP low priority traffic so my normal activities don't get affected by the file transfers. I would like to have the same setup for the SFTP. Now the problem is this: SFTP and SSH are both coming from the same ssh server, listening on port 22. So there is no way of distinguishing them on a ip/port basis. Is there any way of distinguishing SFTP and SSH? Like using iptables to tag one of them and then doing QoS based on the tag or something along those lines? I don't want to slow down my ssh-connections together with the sftp. If anyone has an idea how to accomplish this I would be really glad to hear about it.
Thanks in advance
seiichiro0185
Last edited by seiichiro0185 (2010-08-22 11:27:32)

briest wrote:Well, a simple, though definitely not bulletproof solution: define multiple ports in sshd_config, then use one of them for sftp, and another for ssh?
Thanks for this hint, I didn't know that ssh could listen on multiple ports. Its not totally bulletproof, but good enough for my case. The only people who will have access to the server are trustworthy and won't fiddle with the settings to circumvent my restrictions.
Thanks to all of you for your suggestions.

Similar Messages

  • Native SSH and SFTP in LabVIEW

    At the risk of re-opening a can of worms, is there any consideration for adding native SSH and SFTP support for LabVIEW?
    Using PuTTy/plink is cumbersome and not cross-platform.
    Calling a .NET (or any other) external assembly is cumbersome and not cross-platform.
    Labwerx SSH has a terrible licensing model (not to mention the additional cost).
    It is 2015, and SSH/SFTP is ubiquitous and not going away. These protocols should be natively supported in LabVIEW.
    I have seen this idea on the exchange (http://forums.ni.com/t5/LabVIEW-Idea-Exchange/Native-SSH-and-SFTP-Support/idi-p/1141529), but there hasn't been any movement in 5 years. I would appreciate any news from NI here, even in the negative. If LabVIEW isn't going to support SSH anytime soon, it would be better to find out now.
    Solved!
    Go to Solution.

    I doubt it is likely to happen any time soon - the LabSSH toolkit is pretty reasonably priced when you compare it to how long it would take you to implement the functionality yourself and there is nothing to stop you from implementing it yourself using the TCP/IP functions which are in LabVIEW. You can of course use the command-line interface to something like WinSCP / PuTTy as well.
    I did also find a wrapper that someone had made for an Open Source .NET SSH library called Renci
    I downloaded a copy from this thread: http://forums.ni.com/t5/LabVIEW/Plink-PuTTY-works-30-of-the-time-using-System-Exec-vi/td-p/3002261
    There is also another implementation of the wrapper here: https://decibel.ni.com/content/docs/DOC-41388
    Certified LabVIEW Architect, Certified TestStand Developer
    NI Days (and A&DF): 2010, 2011, 2013, 2014
    NI Week: 2012, 2014
    Knowledgeable in all things Giant Tetris and WebSockets

  • JDev 11.1.1.4.0 Support for SSH and SFTP

    Using JDeveloper 11.1.1.4.0
    I've tried researching Oracle docs, but find nothing on Secure FTP (SFTP). Does Oracle ADF have built-in SSH and SFTP Java libraries? If not, has anyone had success with the Java libraries from SourceForge or is there something better out there?
    Thanks,
    Troy

    There is no build in ftp or ssh library in jdev. I used http://commons.apache.org/net/ in one of my project.
    Timo

  • Mounting samba share starts avahi, ssh and sftp at client

    The problem is at the client. When i mount a samba share (with # mount), avahi is started, which starts ssh and sftp. This is wrong on many levels.
    Not sure how long this has been going on, someone else already asked this on stackexchange on 11.2.15, but didn't get any answers.
    Journal output immediatly after mounting (hostname, ip etc. removed):
    Mär 18 01:35:51 hostname dbus[434]: [system] Activating via systemd: service name='org.freedesktop.Avahi' unit='dbus-org.freedesktop.Avahi.service'
    Mär 18 01:35:51 hostname systemd[1]: Cannot add dependency job for unit boot.automount, ignoring: Unit boot.automount is masked.
    Mär 18 01:35:51 hostname systemd[1]: Listening on Avahi mDNS/DNS-SD Stack Activation Socket.
    Mär 18 01:35:51 hostname systemd[1]: Starting Avahi mDNS/DNS-SD Stack Activation Socket.
    Mär 18 01:35:51 hostname systemd[1]: Starting Avahi mDNS/DNS-SD Stack...
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Found user 'avahi' (UID 84) and group 'avahi' (GID 84).
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Successfully dropped root privileges.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: avahi-daemon 0.6.31 starting up.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: WARNING: No NSS support for mDNS detected, consider installing nss-mdns!
    Mär 18 01:35:51 hostname dbus[434]: [system] Successfully activated service 'org.freedesktop.Avahi'
    Mär 18 01:35:51 hostname systemd[1]: Started Avahi mDNS/DNS-SD Stack.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Successfully called chroot().
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Successfully dropped remaining capabilities.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Loading service file /services/sftp-ssh.service.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Loading service file /services/ssh.service.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Joining mDNS multicast group on interface enp1234.IPv4 with address myip.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: New relevant interface enp1234.IPv4 for mDNS.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Network interface enumeration completed.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Registering new address record for myip on enp1234.IPv4.
    Mär 18 01:35:51 hostname avahi-daemon[2583]: Registering HINFO record with values 'X86_64'/'LINUX'.
    Mär 18 01:35:52 hostname avahi-daemon[2583]: Server startup complete. Host name is hostname.local. Local service cookie is 123.
    Mär 18 01:35:53 hostname avahi-daemon[2583]: Service "hostname" (/services/ssh.service) successfully established.
    Mär 18 01:35:53 hostname avahi-daemon[2583]: Service "hostname" (/services/sftp-ssh.service) successfully established.

    Thanks for your answer.
    snakeroot wrote:Are you sure it is actually starting ssh and ssftp or is it just having avahi advertise them as existing?
    I'm not sure if anything is started, the term "Service ssh successfully established" sounds like the ssh serrver is started to me, but it might just be strange wording. What does "advertise as existing" mean?
    From the snippet you quoted, it looks like the latter. Unless you have alread started socket activation for ssh or sftp, whether via systemd *.socket or inetd, I'm not sure it would actually be started.
    I didn't enable anything manually.
    I think you can rm/mv the sftp-ssh.service and ssh.service files /etc/avahi/services/ and prevent those services from being advertised.
    OK thanks for the hint. Nontheless i would rather stop avahi from starting than configuring it.
    Begin rant...
    I'm a bit annoyed that avahi is starting without my permission. Seems like systemd is getting a bit overzealous with starting services. Interestingly this was one of the big problems with upstart, and was supposed to be solved with systemd. I still like systemd.

  • Use external drive for both Time Machine and storage for Back to My Mac

    Hi all,
    I have been "a Mac" now for over a year and just keep finding cool new things that make me happy I switched. The latest thing is Back to My Mac offered with my Mobile Me account. With a rather convoluted mix of PC/Mac/iOS devices to manage - best $99 I ever spent btw...
    I also have a 1TB Time Capsule that I have been using with Time Machine to back up all four of my Mac computers at home. Needless to say, the 1TB is really struggling to handle the amount of data being backed up and certainly leaves no room for anything else.
    What I wanted to do was to attach a larger external hard drive via a powered hub to the USB port on the Time Capsule and use it for Time Machine backups while using the internal 1TB drive with Back to My Mac so that I can have remote access to all my data from anywhere without having to leave my computer running at home all the time in order for my laptop to "see" it when I'm away. And, yes, the amount of that data far exceeds what any level of Mobile Me subscription can offer! I should also mention that the hard drive is the only USB device connected through the hub to the Time Capsule at the moment. There are no other devices that might be "getting in the way".
    I'm thinking maybe all this is asking too much without the addition of a dedicated file server (Mac Mini, perhaps - not a purchase my budget wants to make).
    I understand that the Time Capsule doesn't support partitions, so I bought a Western Digital 2TB Elements drive, connected it to my Macbook Pro and used Disk Utility to reformat the drive from the incompatible NTFS it shipped in to a single, Mac OS Extended (Journaled) partition. I then made two folders on the drive, one for Time Machine backups and one for Back to My Mac remote storage/access. Great.
    However, when I connected the 2TB drive to my Time Capsule I could not see it at all. Time Capsule was reporting problems in the way of a disk error. From within my Airport Utility, I could see the trouble was the external drive. The utility suggested connecting the drive to a Mac and using it's Disk Utility to troubleshoot.
    I followed through, checking the disk, etc. and ended up reformatted the drive on my Macbook Pro yet again with the same specifications as before but without the folders and reconnected it to the Time Capsule. Same deal. But now, I can't even remotely connect to the Time Capsule at all. I can see the Time Capsule in the shared area of my Macbook's Finder but can not connect. The connection tries and fails even before it gets to asking me for username and password credentials.
    Long story short, first of all, I suppose I would like to know if I'm asking for the impossible?
    Second, if what I want to do *is* possible, what steps do I need to take to make it so?
    Thanks in advance for any advice or suggestions you might have.

    Well, I have now reformatted/partitioned my poor WD Elements 2TB drive about a dozen times as well as restarted my 1TB Time Capsule so many times it's no wonder it's as confused as I am! <G>
    Last night, at your suggestion, William, and in respect for your continued support, I tried creating two 1TB Mac OS Extended (Journaled) partitions on the WD external USB drive, both with GUID partition tables. Both volumes mounted to my laptop's desktop flawlessly and without issue.
    Once the external drive was connected to the Time Capsule, however, it was a crap shoot as to whether or not the drive was recognized at all, reporting a problem with the disk, or, even at one point, mounting one of the two volumes but not both. <sigh>
    I read somewhere on the Internet that you need to restart the Time Capsule for volumes on an external USB drive to be recognized.
    So I tried that. I connected the freshly partitioned/formatted disk to the Time Capsule and restarted it. This succeed in removing the issue of reporting a nameless drive with a capacity of 0MB. It then reported the drive with its correct name but would not recognize whatever volumes in whatever partitions that particular crack at it contained with the exception of the once, as I mentioned above, when only one of two volumes mounted correctly and was listed with the right name and capacity on the Time Capusule's Setup's Disk tab.
    At this point I have given up on my goal to use the external drive with Time Machine to back up my Macs or to hope I will ever be able to see its contents remotely via Back to My Mac. All I would like to do now is simply find a reason why I can't get it successfully connected and playing nice with my Time Capsule in the first place!
    Any further suggestions or advice as to what steps I might take next would be greatly appreciated.
    Thank you all.

  • MAC OS Yosemite - CS6 - A while back, i did something to where when i open a file in photoshop, it no longer is one window, now it's two separete ones. one for the program itself, and another for the actual file how do it get it back to where it's all one

    - A while back, i did something to where when i open a file in photoshop, it no longer is one window, now it's two separete ones. one for the program itself, and another for the actual file how do it get it back to where it's all one window without having to be in full screen mode? I've managed to go some time like this, but right now it's just really annoying me. HELP!!!

    Just drag the small window to the top right below the toolbar, you'll see the area highlighted and when you drop it the file should dock.

  • Which Event Classes i should use for finding good indexs and statistics for queries in SP.

    Dear all,
    I am trying to use pro filer to create a trace,so that it can be used as workload in
    "Database Engine Tuning Advisor" for optimization of one stored procedure.
    Please tel me about the Event classes which i  should use in trace.
    The stored proc contains three insert queries which insert data into a table variable,
    Finally a select query is used on same table variable with one union of the same table variable, to generate a sequence for records based on certain condition of few columns.
    There are three cases where i am using the above structure of the SP, so there are three SPS out of three , i will chose one based on their performance.
    1) There is only one table with three inserts which gets  into a table variable with a final sequence creation block.
    2) There are 15 tables with 45 inserts , which gets into a tabel variable with a final
    sequence creation block.
    3)
    There are 3 tables with 9 inserts , which gets into a table variable with a final
    sequence creation block.
    In all the above case number of record will be around 5 lacks.
    Purpose is optimization of queries in SP
    like which Event Classes i should use for finding good indexs and statistics for queries in SP.
    yours sincerely

    "Database Engine Tuning Advisor" for optimization of one stored procedure.
    Please tel me about the Event classes which i  should use in trace.
    You can use the "Tuning" template to capture the workload to a trace file that can be used by the DETA.  See
    http://technet.microsoft.com/en-us/library/ms190957(v=sql.105).aspx
    If you are capturing the workload of a production server, I suggest you not do that directly from Profiler as that can impact server performance.  Instead, start/stop the Profiler Tuning template against a test server and then script the trace
    definition (File-->Export-->Script Trace Definition).  You can then customize the script (e.g. file name) and run the script against the prod server to capture the workload to the specified file.  Stop and remove the trace after the workload
    is captured with sp_trace_setstatus:
    DECLARE @TraceID int = <trace id returned by the trace create script>
    EXEC sp_trace_setstatus @TraceID, 0; --stop trace
    EXEC sp_trace_setstatus @TraceID, 2; --remove trace definition
    Dan Guzman, SQL Server MVP, http://www.dbdelta.com

  • Exclude QM lot stock for a perticular material and location for PPDS run

    Hi Experts,
    I would like to exclude QM lot stock for a perticular material and location for PPDS run. I have unchecked stock in quality inspection under productmaster/ Demand / availability stock in APO, but still QM lot is appearing in RRP3 view and considering for PPDS heuristic run.
    Can you plesae explain how to exclude QM lot for a PPDS run.
    --Kishore

    Hi Kishore,
    Some companies do not activate the iModel for Inspection Lots and manage the Inspection Lots as Quality Inspection Stock. For example this how it looks an Inspection Lot in RRP3 if you manage the Inpsection Lots as Stock in Quality Inspection:
    Because you are using the iModel transferring Inspection Lots as QM Lots, you can not use the Stock in Quality.
    You can read about it in the help of the field Inspection Lots in CFM1. This is the help:
    Inspection Lots in Integration Model
    You use this indicator to activate the transfer to SAP APO of inspection lots
    that are relevant to stock.
    Dependencies
    You can only activate an integration model for inspection lots if you have
    set in CIF Customizing that inspection lots should be transferred for materials
    relevant to inspection lots instead of qualitiy inspection stock.
    If the inspection lots in SAP APO are to contain the characteristic value
    assignements of the batches assigned to them, you have to transfer the
    characteristic value assignments to SAP APO before activating the integration
    model for inspection lots. You can do this by activating an integration model
    for stock.
    Hope this clairy your doubt.
    Kind Regards,
    Mariano

  • TS3276 can anyone help on the following please. When I have been away from the office for a few days and check for emails it only supplies the most recent 100 emails and the ones before that are never received. thanks

    can anyone help on the following please. When I have been away from the office for a few days and check for emails it only supplies the most recent 100 emails and the ones before that are never received. thanks

    Does your server have a limit?

  • When transferring music library and apps to my new I Pad I think I clicked Export Library instead of synching.  Now my music library is virtually empty - mostly CDs downloaded, a few apps for the I Pad and apps for the I pod too.  Can I move these back?

    When transferring music library and apps to my new I Pad I think I clicked Export Library instead of synching.  Now my music library is virtually empty - mostly CDs downloaded, a few apps for the I Pad and apps for the I pod touch too.  Can I move these back?

    weird very weird. today i did this again today after already being unsuccessful earlier. exactly the same thing as i have done before, exactly. didn't try to import. didn't say damaged library, copied everything in including date. have tried it about 10 times no luck. today it just worked.
    how weird is that?
    oh well JG - maybe you mixed a magic potion for me?
    anyway, thank you for all the help.
    to anyone else reading this all i can say is keep trying, you never know. follow the above advice. you may feel exasperated and think you have done it already, but keep trying.
    cheers
    P

  • HT201250 Is there a way to change the intervals at which Time Machine performs backups (e.g., weekly instead of hourly or daily) past 24 hours, daily for the past month, and weekly for everything older...

    Is there a way to change the intervals at which Time Machine performs backups (e.g., weekly instead of hourly or daily) past 24 hours, daily for the past month, and weekly for everything older...

    You can edit the interval in Console or install a Pref Pane
    called TimeMachineScheduler (Leopard or higher) free from:
    http://www.klieme.com/TimeMachineScheduler.html
    Good luck, Tom

  • NEED BAPI FOR  SALES CONTRACT CREATION AND EXTRACTION FOR Trans- PA41& PA43

    Hi All,
    I need the BAPI for T-code PA41 and PA43 for sales contract.
    i would like to extract all the contract details for Contract data contains Table VEDA. And need to create contract.
    Any body please help me out...
    Please give me code if any one have how to do mapping ..
    Thank you,
    Vishnu.

    Hi Vichu,
    Please search on SCN.
    Regards
    Abhii

  • How could I set the proxy settings for just some URLs and not for all?

    Hello,
    I am using HttpURLConnection to establish a HTTP connection . The connection pass through a proxy, and it requires security.
    I know that I can set the proxy settings in the system properties, and this works perfect.
    But I don't want to set the proxy settings in the system properties, because this proxy settings will be for ALL the URLs, and I just want for a few URLs.
    How could I set the proxy settings for just some URLs and not for all?
    Thanks

    java.net.URL.openConnection(java.net.Proxy proxy)
    @since 1.5

  • Steps for execution of valuated and unvaluated for MTO scenario

    Hi,
    Can any one provide the steps for execution of valuated and unvaluated for MTO scenario.
    regards,
    RAM

    Hi,
    Please find below the details about Valuated and non-valuated Sale Order scenarios:
    SAP Scenario 1 - Valuated Sale Order Stock u2013 with Sale Order Controlling u2013 (MTO, ATO and ETO with VC)
    1     Enquiry     
    2     Opportunity     
    3     Quotation (Creation and Approval). In case of ETO u2013 BPO is created and updated in quotation (condition type)     
    4     Creation of Sale Order     
    5     MRP Run u2013 Creation of Planned Order u2013 Creation of Production Order and Purchase Order     
    6     External Procurement u2013 Goods Receipt     ROH Inventory A/c Dr (BS)
         To GR/IR A/c Cr (P&L)
    7     Material Consumption to Production Order     In FI:
    ROH con. A/c Dr (P&L)
        To ROH Inventory A/c Cr (BS)
    Same is the case with HALB
    In CO:
    Cost of Material is debited to Production Order
    8     Activity Consumption to Production Order     No FI Posting
    In CO:
    Production Order is debited and cost center is credited with activity cost
    9     Goods Receipt from Production Order     FG Inventory A/c Dr (BS)
       To COGM A/c Cr (P&L)
    10     Delivery to customer     In-Transit A/c   Dr. (BS)
       To FG Inventory A/c Cr (BS)
    11     Invoicing to customer     In FI:
    Customer A/c Dr (BS)
       To Revenue A/c Cr (P&L)
    COGS A/c   Dr (P&L)
        To In-Transit A/c Cr (BS)
    In CO:
    COGS and Revenue are posted to COPA
         Period end closing u2013 Production Order     
    12     Revaluation of activity prices     Production Order and Cost Center will be debited or credited as the case may be
    13     Calculation of WIP     In FI:
    WIP A/c  Dr. (BS)
      To Change in WIP A/c Cr (P&L)
    If the Order is completed:
    In FI:
    Change in WIP A/c   Dr(P&L)
       To WIP A/c Cr (BS)
    14     Calculation of Variances     Variances are Calculated on the Production Order. No FI or CO entries
    15     Settlement to Sale Order     Production Order and Sales Order will get debited/credited depending on whether they are positive or negative variances
    Period end closing u2013 Sale Order
    16     Result analysis at Sale Order     Result Analysis run will identify the status of the sale order and will enable the postings to COPA at the time of settlement
    17     Settlement of Sale Order     
    In FI:
    Variances A/c Dr (P&L)
      To COGS Account Cr (P&L)
    (It would be otherwise if variances are positive)
    In CO:     
    COGS, Revenue and Variances are settled to COPA
    SAP Scenario 2 u2013 Non-valuated Sale Order Stock u2013 with Sale Order Controlling
    Process Step     Business Process Flow     Value Flow u2013 FI/CO
    1     Enquiry     
    2     Opportunity     
    3     Quotation (Creation and Approval)     
    4     Creation of Sale Order     
    5     MRP Run u2013 Creation of Planned Order u2013 Creation of Production Order and Purchase Order     
    6     External Procurement u2013 Goods Receipt     In FI:
    Consumption A/c   Dr (P&L)
       To GR/IR A/c  Cr (P&L)
    In CO:
    Material costs will directly get posted to Sale Order
    7     Material Consumption to Production Order     Not applicable
    8     Activity Consumption to Production Order     In FI:
    No Entry
    In CO:
    Activity Costs are posted to Production Order
    9     Goods Receipt from Production Order     Only Material Document for movement of goods will be there.  The stock is neither valuated in CO nor in FI
    10     Delivery to customer     Just goods movement from sale order stock to customer. No value postings in FI and CO
    11     Invoicing to customer     In FI:
    Customer A/c Dr (BS)
       To Revenue Cr (P&L)
    In CO:
    COGS and Revenue get posted to Sale Order
         Period end closing u2013 Production Order
    12     Revaluation of activity prices     Prodn Order and Cost Center will be debited or credited as the case may be
    13     Calculation of WIP     No WIP
    14     Calculation of Variances     No Variances
    15     Settlement of costs to Sale Order     All the costs accumulated in Production Order gets collected to Sale Order
    16     Settlement of Variances     No Variances in Production Order
         Period end closing u2013 Sale Order     
    17     Result analysis at Sale Order     In FI
    WIP A/c  Dr. (BS)
      To Change in WIP A/c Cr (P&L)
    If the Order is completed:
    Change in WIP A/c   Dr (P&L)
       To WIP A/c Cr (BS)
    No CO postings will happen
    18     Settlement of Sale Order     COGS, Revenue and other direct sale order related values will get posed to PA.
    Best Regards
    Surya

  • Can I make firefox defualt for some web shortcuts and IE for others?

    I need to make firefox defualt for some web shortcuts and IE for others.

    # Type ''about:config'' into the location bar and press enter
    # Accept the warning message, this brigs up a list of preferences
    # In the filter box type ''check''
    # Double-click on the preference browser.cache.check_doc_frequency and change its value to 1
    For more details on this preference see http://kb.mozillazine.org/Browser.cache.check_doc_frequency

Maybe you are looking for

  • I downloaded Leegt-games toolbar and now FF freezes as soon as it opens. I've tried to get rid of it but can't! Help!!

    Since I downloaded LeeGt-Games toolbar everytime I open FF it instantly freezes. I even tried uninstalling and installing again. I thought I got rid of all instances of the toolbar but evidently I didn't. Please help me get rid of this toolbar so I c

  • What Hardware I need?

    Hello, we want to develope a application who should use a Oracle database. But we did not exactly know what traffic or transactions occurs. But we still know the user count. The amount of users are 400 concurrent users. 30% power users and 70% low pr

  • Error in adobe reader last version

    Dear , i want to update patch for adobe reader from old version to latest 11.0.10 but i got error once update patch using command any one can help me Regards, Mohammed

  • InDesign To Dreamweaver CS4

    I am having some difficulties with InDesign CS4 (6.0.4.578). I have a file that I would like to export for Dreamweaver CS4 but the option is grayed out. I am able to go to file-export and then select from that menu but that is not exactly what I am l

  • Accessing Discoverer 3i

    I can access Discoverer 3i internally on a network, but as soon as I try it over the Internet, it can't locate the locator.ior file. any suggestions?