The UNIX and Linux Forums  

Go Back   The UNIX and Linux Forums > Special Forums > Security
Google UNIX.COM
Home Forums Register Rules & FAQ Members List Arcade Search Today's Posts Mark Forums Read


Security Anything involving computer security goes here.


Other UNIX.COM Threads You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
How to prevent /dev/rmt* re-assignments jwholey AIX 5 03-30-2008 06:26 AM
Prevent output to window katrvu Shell Programming and Scripting 3 02-20-2008 09:52 AM
Prevent ftp usage NineInch AIX 1 03-03-2006 08:16 PM
how to prevent deadlock on this... yimab High Level Programming 5 10-11-2005 05:57 PM
Prevent bash from interpretation : uday UNIX for Dummies Questions & Answers 7 06-25-2002 10:35 PM

Reply
 
Submit Tools LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 03-01-2006
Registered User
 

Join Date: Apr 2002
Location: Chesterfield, UK
Posts: 124
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Spurl this Post!
SSH - prevent roaming around the server

Hi,

We have a user who needs to connect to us over the internet using an ssh client. We use HP-UX 11.00.

We set up a home directory with login and password for them. We would not want to give them full roaming access for the server ie, they should not be able to cd up the directory tree.

We have found that if they connect with ftp, they do not have roaming access. However, if they connect with ssh/sftp, they do have full roaming access.

Can anyone tell me how to stop them cd'ing out of their home directory up the directory tree when using ssh/sftp?

Many thanks
Helen
Reply With Quote
Forum Sponsor
  #2 (permalink)  
Old 03-01-2006
Ygor's Avatar
Moderator
 

Join Date: Oct 2003
Location: -31.96,115.84
Posts: 1,206
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Spurl this Post!
Sounds like you should set their login shell to rksh.
Reply With Quote
  #3 (permalink)  
Old 03-03-2006
andryk's Avatar
Registered User
 

Join Date: Sep 2003
Posts: 448
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Spurl this Post!
Sure babOOshka ,
Though i think u know the answer i'm gonna post another one for others, You should use the ssh with chroot support here's the link link
Reply With Quote
Google UNIX.COM
Reply



Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 08:02 PM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited.
The UNIX and Linux Forums Content Copyright ©1993-2008 The CEP Blog All Rights Reserved -Ad Management by RedTyger

Search Engine Optimization by vBSEO 3.1.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102