Statement introduced in Release 11.4 of Junos OS.
Use this configuration option to prevent a user from creating an SSH tunnel over a CLI session to a Junos router via SSH. This type of tunnel could be used to forward TCP traffic, bypassing any firewall filters or ACLs, allowing access to resources beyond the router.
This configuration option does not affect the existing SSH sessions and applies to only the new SSH sessions.
Required Privilege Level
system—To view this statement in the configuration.
system-control—To add this statement to the configuration.
Junos OS Security Configuration Guide