installing chroot support in ssh/sftp opensssh-3.5p1

From: Wieckowski, Tom (TWieckowski@MSA.com)
Date: 12/19/02

  • Next message: jlm: "operation timeout"
    From: "Wieckowski, Tom" <TWieckowski@MSA.com>
    To: "'secureshell@securityfocus.com'" <secureshell@securityfocus.com>
    Date: Thu, 19 Dec 2002 11:35:45 -0500
    
    

    Hello,
     I have installed openssh-3.5p1 onto my tru64 5.1a system. I am trying to
    implement chroot support for ssh/sftp.
    I have added the patches as supplied from http://chroot.sourceforge.net ,and
    have built my chrooted environment.
    The environment works fine when I issue chroot natively " chroot
    /home/user/jail/user /bin/sh.
    But when I try to ssh in as the user, I am not chrooted. /etc/passwd has the
    following for home directory ".../user/./jail/user/..
    I verify this by issueing the following;
    #ssh user@host
    $ls (gives me chrooted directory).
    $cd /
    $ls (gives me root's(user) home directory). out of chroot.

    Hope this makes sense. Any insight or guidance as to what may be wrong
    would be greratly appreciated.
     

    Tom Wieckowski
    Management Science Associates
    Information Systems
    412-362-8929 ext. 1572
    email twieckowski@msa.com



    Relevant Pages

    • Re: Observations on make release process?
      ... dorelease target, a special target which must only be executed in the ... the root for the chroot and then execute it in the chrooted environment ... rerelease" targets must be run from a normal root shell, ...
      (freebsd-hackers)
    • Re: Ronning named in chroot env
      ... You can keep the number of libs that you need to put in the chroot down by ... If you are using the ports collection to build bind, ... > In case someone is interested in running named in chrooted environment on ... > FreeBSD, below is my experience how this can be done. ...
      (FreeBSD-Security)
    • Re: native 32 bit binaries on amd64
      ... edwardsa writes: ... recommend that AMD64 users set up a chrooted environment, ... Chroot doesn't need that. ...
      (Debian-User)
    • Re: /proc mounted in chroot breaks su
      ... On Thu, 2005-01-27 at 17:13, Steve Brueckner wrote: ... > I've got a chrooted environment that's pretty much a duplicate of my primary ... > mounted in the chroot environment. ... I don't think the SELinux is coming into play here. ...
      (Fedora)
    • Limiting IP addresses in chroot environment
      ... I am looking for a way to have a chrooted environment ... It doesn't look like the Solaris distributed chroot can do this, ... UNIX Administrator, Dy 4 Systems ...
      (SunManagers)