Sample code for 30+ languages & platforms
Xbase++

Connect to an SSH Server Through Another (Jump Host)

See more SSH Examples

Demonstrates the Chilkat Ssh.ConnectThroughSsh method, which connects to a second SSH server through an already connected and authenticated Ssh object. The first argument is the first (jump-host) Ssh object, and the second and third are the destination hostname and port.

Background: This is SSH chaining through a "jump host" (bastion): the application connects to a reachable gateway, then tunnels onward to a target that is only accessible from inside the network. Each hop is authenticated separately with its own credentials. The result is a normal Ssh object for the target that happens to be routed through the first connection.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oSshJump
LOCAL nSshPort
LOCAL cPassword
LOCAL oSshTarget

nSuccess := 0

//  Demonstrates the Ssh.ConnectThroughSsh method, which connects to a second SSH server through
//  an already connected and authenticated Ssh object (a jump host).  The 1st argument is the
//  first Ssh object, and the 2nd and 3rd are the destination hostname and port.

oSshJump := CreateObject("Chilkat.Ssh")

//  Connect and authenticate to the first SSH server (the jump host).
nSshPort := 22
nSuccess := oSshJump:Connect("jump.example.com", nSshPort)
IF (nSuccess == 0)
    ? oSshJump:LastErrorText
    oSshJump:destroy()
    RETURN
ENDIF

//  Normally you would not hard-code the password in source.  You should instead obtain it
//  from an interactive prompt, environment variable, or a secrets vault.
cPassword := "mySshPassword"

nSuccess := oSshJump:AuthenticatePw("jumpUser", cPassword)
IF (nSuccess == 0)
    ? oSshJump:LastErrorText
    oSshJump:destroy()
    RETURN
ENDIF

//  Connect to the target SSH server through the jump host.
oSshTarget := CreateObject("Chilkat.Ssh")
nSuccess := oSshTarget:ConnectThroughSsh(oSshJump, "target.example.com", nSshPort)
IF (nSuccess == 0)
    ? oSshTarget:LastErrorText
    oSshJump:destroy()
    oSshTarget:destroy()
    RETURN
ENDIF

//  Authenticate to the target server (separate credentials).
nSuccess := oSshTarget:AuthenticatePw("targetUser", cPassword)
IF (nSuccess == 0)
    ? oSshTarget:LastErrorText
    oSshJump:destroy()
    oSshTarget:destroy()
    RETURN
ENDIF

? "Connected to the target through the jump host."

oSshTarget:Disconnect()
oSshJump:Disconnect()

oSshJump:destroy()
oSshTarget:destroy()