Follow Discord
Sweep 08 Oct 2026 · 18:53Z Build v2.1.295 516 read Stable v2.1.286 Latest v2.1.295 Next v2.1.295 Feeds RSS JSON llms.txt llms-full.txt Unofficial
One change · claude-docs

SSH remote sessions in Claude Desktop on 3P changedthird-party/claude-desktop/ssh-remote-sessions

Nearest release: v2.1.283, published an hour after upstream edited the page. Shown because the two are within 24 hours of each other. Nothing here says the release caused the edit.

Upstream edited this page at 25 Sep 2026 17:09 UTC, give or take a minute or two: the time comes from Anthropic’s own sitemap rather than from a commit. This site recorded the change at 28 Sep 2026 22:07 UTC.

Upstream edited
Recorded here
Lines+22added
Lines−22removed
From line 23 where the diff opens
First seen 28 Aug 2026 this site's first read of the page
Recorded edits10to this page, all time

The whole hunk

from line 23, old and new numbered
/
lines
from line 23
2323 
2424Set [`sshHostAllowlist`](/docs/third-party/claude-desktop/configuration#sshhostallowlist) in your managed configuration. It appears in the **Code surface** section of the [in-app configuration window](/docs/third-party/claude-desktop/in-app-configuration) while Code is enabled.
2525 
26| Value | Behavior |
27| --------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
28| Unset | Off, unless a Claude Code managed-settings `sshHostAllowlist` on the device allows hosts (see [Interaction with Claude Code managed settings](#interaction-with-claude-code-managed-settings-on-the-device)) |
29| `[]` | Off. Delivered by an administrator, `[]` also overrides a Claude Code managed-settings allowlist on the device |
30| `["*"]` | Users can connect to any host |
31| `["build01.corp.example.com", "*.dev.example.com"]` | Users can connect only to hosts that match an entry |
26| Value | Behavior |
27| - | - |
28| Unset | Off, unless a Claude Code managed-settings `sshHostAllowlist` on the device allows hosts (see [Interaction with Claude Code managed settings](#interaction-with-claude-code-managed-settings-on-the-device)) |
29| `[]` | Off. Delivered by an administrator, `[]` also overrides a Claude Code managed-settings allowlist on the device |
30| `["*"]` | Users can connect to any host |
31| `["build01.corp.example.com", "*.dev.example.com"]` | Users can connect only to hosts that match an entry |
3232 
3333While SSH remote sessions are off, the environment picker shows local sessions only, and any attempt to connect to a saved host is refused.
3434 
from line 71
7171 
7272The remote engine uses only the credential Claude Desktop passes in its environment. It ignores credentials already on the host, such as an AWS profile or application default credentials, and Claude Desktop copies no credential files there. Credential kinds that live in a file on the device are refused at session start.
7373 
74| Provider | Works on a remote host | Refused at session start |
75| ------------------------------------------------------------------- | -------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------- |
76| [LLM gateway](/docs/third-party/claude-desktop/gateway) | Static API key, single sign-on, credential helper | |
77| [Claude API](/docs/third-party/claude-desktop/claude-api) | Static API key, Sign in with Claude Console, credential helper | |
78| [Microsoft Foundry](/docs/third-party/claude-desktop/foundry) | API key, in-app Entra ID sign-in, credential helper | |
79| [Amazon Bedrock](/docs/third-party/claude-desktop/bedrock) | Bearer token, identity provider sign-in, credential helper | In-app AWS sign-in (IAM Identity Center), named profile |
80| [Amazon Bedrock Mantle](/docs/third-party/claude-desktop/mantle) | Bearer token, credential helper | |
81| [Google Cloud's Agent Platform](/docs/third-party/claude-desktop/vertex) | In-app Workforce Identity sign-in, credential helper | In-app Google sign-in, service-account key or credentials file, application default credentials on the device |
74| Provider | Works on a remote host | Refused at session start |
75| - | - | - |
76| [LLM gateway](/docs/third-party/claude-desktop/gateway) | Static API key, single sign-on, credential helper | |
77| [Claude API](/docs/third-party/claude-desktop/claude-api) | Static API key, Sign in with Claude Console, credential helper | |
78| [Microsoft Foundry](/docs/third-party/claude-desktop/foundry) | API key, in-app Entra ID sign-in, credential helper | |
79| [Amazon Bedrock](/docs/third-party/claude-desktop/bedrock) | Bearer token, identity provider sign-in, credential helper | In-app AWS sign-in (IAM Identity Center), named profile |
80| [Amazon Bedrock Mantle](/docs/third-party/claude-desktop/mantle) | Bearer token, credential helper | |
81| [Google Cloud's Agent Platform](/docs/third-party/claude-desktop/vertex) | In-app Workforce Identity sign-in, credential helper | In-app Google sign-in, service-account key or credentials file, application default credentials on the device |
8282 
8383When the configured credential is a refused kind, the session fails before anything is deployed to the host, with the card [Remote sessions aren't available with this inference setup](#remote-sessions-aren%E2%80%99t-available-with-this-inference-setup).
8484 
from line 117
117117 
118118Claude Desktop writes the following into the SSH user's home directory on the host. Each user who connects gets their own copy.
119119 
120| Path on the host | Contents |
121| ------------------------------------ | ------------------------------------------------------------------------------------------------------------------- |
122| `~/.claude/remote/srv/<version>/` | The remote server that Claude Desktop talks to |
123| `~/.claude/remote/ccd-cli/<version>` | The Claude Code engine, one file per version (the three most recent versions are kept) |
124| `~/.claude/remote/run/<id>/` | The server's socket, token, and log |
125| `~/.claude/remote/plugins/<hash>/` | Plugins synced from the device |
126| `~/.claude/uploads/<session-id>/` | Files the user attached to a message. Not removed when the session ends |
127| `~/.claude/` and `~/.claude.json` | Claude Code's own data, including session transcripts. See [Data storage](/docs/third-party/claude-desktop/data-storage) |
120| Path on the host | Contents |
121| - | - |
122| `~/.claude/remote/srv/<version>/` | The remote server that Claude Desktop talks to |
123| `~/.claude/remote/ccd-cli/<version>` | The Claude Code engine, one file per version (the three most recent versions are kept) |
124| `~/.claude/remote/run/<id>/` | The server's socket, token, and log |
125| `~/.claude/remote/plugins/<hash>/` | Plugins synced from the device |
126| `~/.claude/uploads/<session-id>/` | Files the user attached to a message. Not removed when the session ends |
127| `~/.claude/` and `~/.claude.json` | Claude Code's own data, including session transcripts. See [Data storage](/docs/third-party/claude-desktop/data-storage) |
128128 
129129Each side of a remote session needs its own network access.
130130 
Feedback