Forum Discussion

KMitchellwr_504's avatar
KMitchellwr_504
Icon for Nimbostratus rankNimbostratus
Jan 13, 2014

Is it possible to capture the login id out of a SSH session with an iRule?

We have an iRule that looks for logins other than annoymous and rejects the seesion for our ftp site. We would like to have the same protection for our SFTP site. Can this be done with TCP::Collect?

 

1 Reply

  • I don't think it's possible to decrypt SSH/SFTP on BIG-IP. The username should be encrypted so I don't think you can parse it from the logon attempt.

     

    https://devcentral.f5.com/articles/ftps-offload-via-irules

     

    Aaron