Re: Lock user into one directory?

From: Sebastian Schack (sschack@ki.tng.de)
Date: 04/22/03


From: Sebastian Schack <sschack@ki.tng.de>
Date: Tue, 22 Apr 2003 14:26:08 +0200

On 04/22/03 13:56 Nico Kadel-Garcia wrote:

> FTP can be configured to act this way as well: Take a look at the
> "anonftp" software bundles for RedHat and other Linux systems, which
> provide an appropriate chroot cage for FTP use.
>

Right. I'm using ProFTPd here and all users (except me *g*) are trapped
in my ftp-directory

> Setting it up for SSH is
> a bit more of an adventure, since the OpenSSH authors have never
> integrated in any of the various published chroot patches.
>

This means, I assume, that I won't find a user-friendly HowTo? :)

Sebastian

-- 
"I'm starting with the man in the mirror, I'm asking him to change his
ways, And no message could have been any clearer, If you wanna make the
world a better place, Take a look at yourself, and then make a change!"
- Michael Jackson


Relevant Pages

  • Re: open ssh on windows - replacement for ftp
    ... I realise that sftp!= ftp in any way shape or form. ... What I wanted to do was completely remove ftp from my system and force users ... > sftp has *ZIP, ZERO, ZADA* to do with the ftp protocol. ... > chroot cage, ...
    (comp.security.ssh)
  • Re: Problem setting common root folder vsFTPd
    ... Right now, when techuser logs in, /FTP is the home ... > directory, but tech user can get to ETC, BIN and any other directory by ... You need to create a chroot cage. ... FTP needs, an /etc/passwd and /etc/group file, certain binaries in /bin, ...
    (comp.os.linux.security)
  • Re: open ssh on windows - replacement for ftp
    ... > What I wanted to do was completely remove ftp from my system and force ... > to sftp in. ... > what a user can see, much the same way as ftp servers allow. ... you need a chroot cage (or to do something else altogether to provide ...
    (comp.security.ssh)
  • Re: open ssh on windows - replacement for ftp
    ... > What I wanted to do was completely remove ftp from my system and force ... > to sftp in. ... > what a user can see, much the same way as ftp servers allow. ... you need a chroot cage (or to do something else altogether to provide ...
    (comp.security.ssh)