SSH Reference Manual
SSH2 Parameter Reference 
This section describes all available SSH2 parameters in alphabetical order. Note that parameter names are case 
insensitive, regardless of the source in which they appear. 
Some of the parameters are also valid for clients, please reference section "FILE I/O parameters for SFTP/SFTPOSS". 
Parameter Overview 
The following table lists all available SSH2 parameters and their meanings: 
Parameter  Meaning 
ALLOWEDAUTHENTICATIONS 
Sets the list of allowed authentications for users automatically added to 
SSHCTL 
ALLOWEDSUBSYSTEMS 
Sets the list of allowed subsystems which globally restricts the users' settings 
of ALLOWED-SUBSYSTEMS attribute. 
ALLOWFROZENSYSTEMUSER 
Controls whether ssh users with a frozen Safeguard user configured as 
SYSTEM-USER are allowed to authenticate. 
ALLOWINFOSSH2  Controls who is allowed to execute SSHCOM command INFO SSH2. 
ALLOWPASSWORDSTORE 
Controls whether users are allowed to use stored passwords for connections to 
remote SSH daemons. 
ALLOWTCPFORWARDING  Allows global configuration of TCP port forwarding. 
AUDITCONSOLE  Determines whether audit messages are written to the console. 
AUDITEMS  Determines whether audit messages are written to EMS. 
AUDITFILE  Determines whether audit messages are written to a file. 
AUDITFILERETENTION  Controls audit file rollover. 
AUDITFORMAT  Controls the format of the audit messages that are written. 
AUDITFORMATCONSOLE  Controls the format of the audit messages that are written to the console. 
AUDITFORMATEMS  Controls the format of the audit messages that are written to EMS. 
AUDITFORMATFILE  Controls the format of the audit messages that are written to a file. 
AUDITMAXFILELENGTH  Controls the maximum size of the audit file. 
AUTOADDAUTHPRINCIPAL  Controls whether the PRINCIPAL should be automatically added. 
AUTOADDSYSTEMUSERS 
Controls whether remote users can log on via SSH using a Guardian user ID or 
alias, without configuring them explicitly via SSHCOM in the SSHCTL.  
AUTOADDSYSTEMUSERSLIKE 
Allows definition of a default user configuration when users are automatically 
added to SSHCTL. 
BACKUPCPU  Specifies a backup CPU for running SSH2 as a NonStop process pair. 
BANNER 
Configures an authentication banner message to be displayed to SSH clients 
connecting to the SSH2 daemon. 
BURSTSUPPRESSION  Controls log message duplicates suppression for all log targets. 
BURSTSUPPRESSIONEXPIRATIONTIME 
Configures the time interval duplicate log messages are suppressed before they 
get logged again. 
BURSTSUPPRESSIONMAXLOGLEVEL 
Sets the maximum log level of messages that get suppressed if burst 
suppression enabled. 
CACHEBURSTSUPPRESSION  Controls log message duplicates suppression for log target memory cache. 
CIPCOMPATERROR  Allows creation of DEFINE =CIP^COMPAT^ERROR. 
CIPHERS  Details the list of cipher suites that will be accepted. 
50 • Configuring and Running SSH2  HP NonStop SSH Reference Manual 










