# $OpenBSD: ssh_config,v 1.35 2020/07/17 03:43:42 dtucker Exp $# This is the ssh client system-wide configuration file. See# ssh_config(5) for more information. This file provides defaults for# users, and the values can be changed in per-user configuration files# or on the command line.# Configuration data is parsed as follows:# 1. command line options# 2. user-specific file# 3. system-wide file# Any configuration value is only changed the first time it is set.# Thus, host-specific definitions should be at the beginning of the# configuration file, and defaults at the end.# Site-wide defaults for some commonly used options. For a comprehensive# list of available options, their meanings and defaults, please see the# ssh_config(5) man page.# Host *# ForwardAgent no# ForwardX11 no# PasswordAuthentication yes# HostbasedAuthentication no# GSSAPIAuthentication no# GSSAPIDelegateCredentials no# BatchMode no# CheckHostIP no# AddressFamily any# ConnectTimeout 0# StrictHostKeyChecking ask# IdentityFile ~/.ssh/id_rsa# IdentityFile ~/.ssh/id_dsa# IdentityFile ~/.ssh/id_ecdsa# IdentityFile ~/.ssh/id_ed25519# Port 22# Ciphers aes128-ctr,aes192-ctr,aes256-ctr,aes128-cbc,3des-cbc# MACs hmac-md5,hmac-sha1,umac-64@openssh.com# EscapeChar ~# Tunnel no# TunnelDevice any:any# PermitLocalCommand no# VisualHostKey no# VerifyHostKeyDNS yes# ProxyCommand ssh -q -W %h:%p gateway.example.com# RekeyLimit 1G 1h# UserKnownHostsFile ~/.ssh/known_hosts.d/%k### First jump host. Directly reachablehost r0uter.net.work HostName xxx.ch### Second jumphost. Only reachable via jumphost1.example.orgHost 5erver.net.work HostName server.xxx.ch ProxyJump 5erver### Host only reachable via alphajump and betajumpHost pikvm.net.work HostName kvm.xxx.ch ProxyJump pikvm#Host nas.net.work Hostname nas.xx.ch Proxyjump nas