The UNIX and Linux Forums  


Go Back   The UNIX and Linux Forums > Operating Systems > HP-UX
.
google unix.com



HP-UX HP-UX (Hewlett Packard UniX) is Hewlett-Packard's proprietary implementation of the Unix operating system, based on System V.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
On ROWNUM and Limiting Results iBot Oracle Updates (RSS) 0 04-06-2008 06:10 AM
SSH keys and command limiting ... moomain UNIX for Dummies Questions & Answers 1 01-29-2008 08:50 PM
limiting failed logins to three csaunders HP-UX 1 10-18-2007 10:56 AM
Limiting telnet sessions on HP UX Box Witlr UNIX for Advanced & Expert Users 2 02-25-2002 07:43 AM
Limiting access misha UNIX for Dummies Questions & Answers 4 02-24-2001 07:25 AM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 03-24-2009
Emancipator Emancipator is offline
Registered User
  
 

Join Date: Mar 2008
Posts: 2
Limiting SFTP Users While Not Limiting Regular Users?

Hi,

I have searched the web and have come back with nothing that is satisfactory for what I require. SFTP is my corporations new file transfer standard. What I require is a method to lock down SFTP users to their directory (they may go to sub directories) while not restricting regular users.

We setup a CHROOTed user in OpenSSH but it requires that the write option be disabled (for world and group) in all the parent directories of where we would like the SFTP user home directory to be. We tried to hard link the user directory to the location but it still requires write be disabled (for world and group) in the parent directories of the directory that is linked. An easy alternative would be to disable the CD command but once again I have not found a method to do so. Any ideas are greatly appreciated!

Thanks ahead of time!
  #2 (permalink)  
Old 03-24-2009
jim mcnamara jim mcnamara is online now Forum Staff  
...@...
  
 

Join Date: Feb 2004
Location: NM
Posts: 5,785
A more or less standard method is to chroot those users to their home directory - which is usually not part of the regular users directory tree.

see:
best practices for chroot

Best Practices for UNIX chroot() Operations
script for a chroot jail:
fuschlberger.net - Howto Setup a chroot-jail for ssh/scp with Linux

ssh is the protocol for sftp and friends. sftp, sshd, ssh and scp are all part of the same thing.
  #3 (permalink)  
Old 03-24-2009
TonyFullerMalv's Avatar
TonyFullerMalv TonyFullerMalv is offline Forum Advisor  
Registered User
  
 

Join Date: Sep 2008
Location: Malvern, Worcs. U.K.
Posts: 740
This article: Linux Configure rssh Chroot Jail To Lock Users To Their Home Directories Only
and its parent article: How to: Configure User Account to Use a Restricted Shell ( rssh ) look promising, hth.
Closed Thread

Bookmarks

Tags
sftp

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 11:15 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0