Secure SHell (SSH) protocol 500 SSH user/group access controls. Directives are processed in this order: deny-users, allow-users, deny-groups and allow-groups Allow members of a group to login Allow specific users to login Disallow members of a group to login Disallow specific users to login Allow the root user to login Allowed ciphers Don't validate the remote host name with DNS Disable password-based authentication Allowed key exchange (KEX) algorithms Local addresses SSH service should listen on ipv4 IP address to listen for incoming connections ipv6 IPv6 address to listen for incoming connections Log level QUIET stay silent FATAL log fatals only ERROR log errors and fatals only INFO default log level VERBOSE enable logging of failed login attempts Allowed message authentication code (MAC) algorithms Port for SSH service 1-65535 Numeric IP port