Bug 640112

Summary: RFE: Unix Domain Socket Forwarding
Product: [Fedora] Fedora Reporter: Niels de Vos <ndevos>
Component: opensshAssignee: Jan F. Chadima <jchadima>
Status: CLOSED NOTABUG QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: low Docs Contact:
Priority: low    
Version: rawhideCC: jchadima, mgrepl, tmraz
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2010-10-05 07:02:14 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Niels de Vos 2010-10-04 20:39:55 UTC
Please consider the inclusion of a patch to OpenSSH which provides local and remote forwarding of Unix domain sockets, similar to the port forwarding capabilities of OpenSSH and the SecSH protocol.

The patch (for OpenSSH-4.7) is available here:
- http://www.25thandclement.com/~william/projects/streamlocal.html

And the upstream bug report (RFE) here:
- https://bugzilla.mindrot.org/show_bug.cgi?id=1256

Comment 1 Jan F. Chadima 2010-10-05 07:02:14 UTC
The upstream does not accept, nor verify the path.
The patch is for version 4.7 current version is 5.6.
The the unix domain tunneling may led to various security issues, because unix domain sockes are considered as local.