Sponsored Content
Operating Systems Solaris User with limited access to one directory Post 302370675 by q8devilish on Thursday 12th of November 2009 05:34:37 AM
Old 11-12-2009
i would like the user just to access /pcard17/trace

not his home directory

Code:
root@zfstest # df -h
Filesystem             size   used  avail capacity  Mounted on
/dev/dsk/c1t0d0s0       20G   9.8G   9.7G    51%    /
/devices                 0K     0K     0K     0%    /devices
ctfs                     0K     0K     0K     0%    /system/contract
proc                     0K     0K     0K     0%    /proc
mnttab                   0K     0K     0K     0%    /etc/mnttab
swap                    16G   1.7M    16G     1%    /etc/svc/volatile
objfs                    0K     0K     0K     0%    /system/object
sharefs                  0K     0K     0K     0%    /etc/dfs/sharetab
/platform/sun4u-us3/lib/libc_psr/libc_psr_hwcap1.so.1
                        20G   9.8G   9.7G    51%    /platform/sun4u-us3/lib/libc_psr.so.1
/platform/sun4u-us3/lib/sparcv9/libc_psr/libc_psr_hwcap1.so.1
                        20G   9.8G   9.7G    51%    /platform/sun4u-us3/lib/sparcv9/libc_psr.so.1
fd                       0K     0K     0K     0%    /dev/fd
swap                    16G   792K    16G     1%    /tmp
swap                    16G    48K    16G     1%    /var/run
/dev/dsk/c1t0d0s6       32G    32M    31G     1%    /data
/dev/dsk/c1t1d0s0       20G   9.8G   9.7G    51%    /bkp-root
iaspool                 15G   3.6G    11G    25%    /ias
oraclepool              15G   7.2G   7.5G    50%    /oracle
pcard01pool            9.8G   1.2G   8.6G    12%    /pcard01
pcard02pool             29G   5.5G    24G    19%    /pcard02
pcard03pool             29G   5.0G    24G    18%    /pcard03
pcard04pool             29G   4.0G    25G    14%    /pcard04
pcard05pool             49G    29G    20G    60%    /pcard05
pcard06pool             49G    22G    27G    46%    /pcard06
pcard07pool             49G    25G    24G    51%    /pcard07
pcard08pool             49G    19G    30G    38%    /pcard08
pcard09pool             29G   9.5G    20G    33%    /pcard09
pcard10pool             29G   6.0G    23G    21%    /pcard10
pcard11pool             29G    11G    19G    37%    /pcard11
pcard12pool             29G   6.0G    23G    21%    /pcard12
pcard13pool             29G   2.9G    26G    11%    /pcard13
pcard14pool             29G   2.9G    26G    11%    /pcard14
pcard15pool             29G   6.0G    23G    21%    /pcard15
pcard16pool             29G   1.6G    28G     6%    /pcard16
pcard17pool             49G    14G    35G    28%    /pcard17
pcard18pool             29G   4.1G    25G    14%    /pcard18
pcard19pool             29G    22K    29G     1%    /pcard19
pcard20pool             29G   2.1G    27G     8%    /pcard20
pcardbkppool           492G   106G   387G    22%    /pcardbkp
/vol/dev/dsk/c0t0d0/sol_10_509_sparc
                       2.5G   2.5G     0K   100%    /cdrom/sol_10_509_sparc
root@zfstest # cd /pcard17/trace
root@zfstest # pwd
/pcard17/trace
root@zfstest #cd ..
root@zfstest # ls -l
total 475
drwxrwxrwx   2 ora10g   dba            2 Mar 12  2007 lost+found
drwxr-xr-x   2 root     root           8 Sep  6 13:04 oper
drwxrwxrwx   3 ora10g   dba         2518 Oct 25 14:25 trace
root@zfstest #

 

8 More Discussions You Might Find Interesting

1. Solaris

How to create a new ftp user account with limited access..?

Hi All, I'm using solaris 2.8, and I want create a new ftp user account with the following restrictions: - Have only ftp access, no telnet or rlogin - Have restricted access to its home directory example /export/home/newuser - Deny access to any other directory. Thanks for your help, ... (6 Replies)
Discussion started by: Jeremy3
6 Replies

2. UNIX for Advanced & Expert Users

Restrict FTP access to a single directory for only one user.

Hi All, It will be very great if you can help me in this issue. Thanks in advance. I need to enable FTP on a solaris9 server. I need to create a new user some "xxxxxx" and he can only FTP the files to and from between /tftpboot directory and network devices. Other users should not... (8 Replies)
Discussion started by: santhoshkumar_d
8 Replies

3. UNIX for Dummies Questions & Answers

user with limited access

dear guys, sorry for asking a noob :p question, tried to search the forum for an answer but couldn't find one, i am running solaris 10 and i would like to create a user with limited access to view only one directory, the directory already exist, is this possible:confused:? thanks and regards (4 Replies)
Discussion started by: q8devilish
4 Replies

4. Solaris

create user with RWX access to a specific directory in Solaris 10

I need to create a user account for a developer that will allow him rwx access to all resources in a directory. How can I do that? Thanks (5 Replies)
Discussion started by: gsander
5 Replies

5. UNIX for Advanced & Expert Users

new userid with limited access

Hi, I want to create a user using useradd -m test. But my requirement is he should not change his directory from Home directory. How can I restric the user not to change his directory from his home dir? Thanks, Suresh Double Post (0 Replies)
Discussion started by: suresh3566
0 Replies

6. Solaris

Limit FTP user's access to a specific directory

Hi, I have searched "Limit FTP user's access to a specific directory" subject for 3 days. I found proftp and vsftp but i couldn't compile and install. Is there any idea. Please suggest. (6 Replies)
Discussion started by: hamurd
6 Replies

7. Solaris

Limit bash/sh user's access to a specific directory

Hello Team, I have Solaris 10 u6 I have a user test1 using bash that belong to the group staff. I would like to restrict this user to navigate only in his home directory and his subfolders but not not move out to other directories. How can I do it ? Thanks in advance (1 Reply)
Discussion started by: csierra
1 Replies

8. UNIX for Beginners Questions & Answers

Linux sftp — how to add new user to access exist directory with write permission?

I have built a website and I can access and edit the website'files on server via the root user. The current file and directory structures are not changeable. Now I am hiring a webpage designer to help me re-design some pages, I am going to let the designer edit the files directly on the server. So... (5 Replies)
Discussion started by: uwo-g-xw
5 Replies
rsh(1M) 						  System Administration Commands						   rsh(1M)

NAME
rsh, restricted_shell - restricted shell command interpreter SYNOPSIS
/usr/lib/rsh [-acefhiknprstuvx] [argument]... DESCRIPTION
rsh is a limiting version of the standard command interpreter sh, used to restrict logins to execution environments whose capabilities are more controlled than those of sh (see sh(1) for complete description and usage). When the shell is invoked, it scans the environment for the value of the environmental variable, SHELL. If it is found and rsh is the file name part of its value, the shell becomes a restricted shell. The actions of rsh are identical to those of sh, except that the following are disallowed: o changing directory (see cd(1)), o setting the value of $PATH, o pecifying path or command names containing /, o redirecting output (> and >>). The restrictions above are enforced after .profile is interpreted. A restricted shell can be invoked in one of the following ways: 1. rsh is the file name part of the last entry in the /etc/passwd file (see passwd(4)); 2. the environment variable SHELL exists and rsh is the file name part of its value; the environment variable SHELL needs to be set in the .login file; 3. the shell is invoked and rsh is the file name part of argument 0; 4. the shell is invoke with the -r option. When a command to be executed is found to be a shell procedure, rsh invokes sh to execute it. Thus, it is possible to provide to the end- user shell procedures that have access to the full power of the standard shell, while imposing a limited menu of commands; this scheme assumes that the end-user does not have write and execute permissions in the same directory. The net effect of these rules is that the writer of the .profile (see profile(4)) has complete control over user actions by performing guaranteed setup actions and leaving the user in an appropriate directory (probably not the login directory). The system administrator often sets up a directory of commands (that is, /usr/rbin) that can be safely invoked by a restricted shell. Some systems also provide a restricted editor, red. EXIT STATUS
Errors detected by the shell, such as syntax errors, cause the shell to return a non-zero exit status. If the shell is being used non- interactively execution of the shell file is abandoned. Otherwise, the shell returns the exit status of the last command executed. ATTRIBUTES
See attributes(5) for descriptions of the following attributes: +-----------------------------+-----------------------------+ | ATTRIBUTE TYPE | ATTRIBUTE VALUE | +-----------------------------+-----------------------------+ |Availability |SUNWcsu | +-----------------------------+-----------------------------+ SEE ALSO
intro(1), cd(1), login(1), rsh(1), sh(1), exec(2), passwd(4), profile(4), attributes(5) NOTES
The restricted shell, /usr/lib/rsh, should not be confused with the remote shell, /usr/bin/rsh, which is documented in rsh(1). SunOS 5.11 1 Nov 1993 rsh(1M)
All times are GMT -4. The time now is 11:06 PM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy