Re: SFTP

From: Martin Ostlund (mo@ares.sot.com)
Date: 08/19/01


Date: Sun, 19 Aug 2001 22:16:39 +0300 (EEST)
From: Martin Ostlund <mo@ares.sot.com>
To: Chip Mefford <cmefford@avwashington.com>
Subject: Re: SFTP
Message-ID: <Pine.LNX.4.10.10108192215080.4887-100000@ares.sot.com>


> I've just tested this on a few machines,
> and sure enough, if you have an account,
> you are root with sftp.
>
> Does the world know this? This is
> a problem!

I discovered this problem a month or so ago, in SecureFX. First I
thought it was something in the securefx client, so I mailed the Van Dyke
team, but they complained that it lays in the server (true), and nothing
more happened.

-martin
 

--
Martin Östlund, Technical Support Manager
Best Linux Sverige AB.
Teknikringen 1B, S-583 30 LINKÖPING, SWEDEN

Phone: +46 13 210 350 Fax: +46 13 210 451 Mob: +46 73 350 86 81 martin.ostlund@sot.com http://www.bestlinux.se/



Relevant Pages

  • Re: Best sftp chroot ?
    ... I have several clients who want to use sftp (SSH) ... lets do a quick check that our chroot (or other jail) is ... because I want you to see your new root working. ...
    (alt.os.linux.suse)
  • Re: SSH sftp and Windows
    ... "libsmb based programs must *NOT* be setuid root. ... >> the to use sftp to get into Linux and then mount some drives from windws ...
    (comp.os.linux.security)
  • RE: sftp-server on solaris8
    ... root is allowed to connect. ... > I am having a problem trying to use sftp over sshd on solaris8. ... $>whoami: Carl Holtje ...
    (SSH)
  • Re: sftp-server
    ... "no-login" account; if you had, it wouldn't do you much good. ... for its peer to begin speaking the sftp protocol. ... clients generally start the server using an SSH-2 subsystem request, ... you'd configure the SSH server to ...
    (comp.security.ssh)
  • Re: creating ftp users!
    ... > Doing what you suggest, I can sftp to the account, but when I do ssh to ... > that account, I get the regular login message but no prompt. ... > It somehow blocks ssh login indeed, ...
    (freebsd-questions)