Currently it is not possible to restrict which remote forwarding is allowed. OpenSSH supports permitlisten to control that in authorized keys file. Could Dropbear gain such feature?
I am trying to enable Dropbear to allow only remote port forwarding for a particular port. It looks I cannot restrict it all the way.