Unix/Linux Go Back    


Linux RedHat, Ubuntu, SUSE, Fedora, Debian, Mandriva, Slackware, Gentoo linux, PCLinuxOS. All Linux questions here!

unix and linux operating commands

how can i jail a user?

Linux


Closed    
 
Thread Tools Search this Thread Display Modes
    #1  
Old Unix and Linux 04-06-2004   -   Original Discussion by byblyk
byblyk's Unix or Linux Image
byblyk byblyk is offline
Registered User
 
Join Date: Mar 2004
Last Activity: 20 February 2007, 2:45 PM EST
Posts: 92
Thanks: 0
Thanked 0 Times in 0 Posts
how can i jail a user?

I created a user
useradd -d /disk2/ftpfiles me

How would i beable to jail me so he could not move arround my file system?
Sponsored Links
    #2  
Old Unix and Linux 04-07-2004   -   Original Discussion by byblyk
TioTony's Unix or Linux Image
TioTony TioTony is offline Forum Advisor  
Bit Pusher
 
Join Date: Oct 2001
Last Activity: 25 December 2016, 8:03 PM EST
Location: Southern California
Posts: 348
Thanks: 0
Thanked 3 Times in 3 Posts
I don't think you will get a simple answer on this one. You may want to google for chroot or restricted shell. It really depends on how much effort you want to put into it and what kind of access the users will have. If you plan to only give a user FTP access, chroot may work. If they are only telneting, ksh -r (restricted shell) may work. In either case there is a tedious set up and you have to be very meticulous about your permissions and umasks. I have played with chroot and ksh -r a few times but have never really had the need to fully jail users in the environments I have worked in. Someone from an ISP may be able to give you more guidance but I figured something was better then nothing.
Sponsored Links
    #3  
Old Unix and Linux 04-07-2004   -   Original Discussion by byblyk
byblyk's Unix or Linux Image
byblyk byblyk is offline
Registered User
 
Join Date: Mar 2004
Last Activity: 20 February 2007, 2:45 PM EST
Posts: 92
Thanks: 0
Thanked 0 Times in 0 Posts
Thanks, i did lots or reading lastnight bout jailing users but most of the websites for it is for proftp, i'll look up restricted shells though. I'm jsut setting up an FTP for myself and my friends, there not really rocket scientists so i just want to prevent them from doing somthing stupid accidentaly. My professor showed me a really easy way last semester, i'm going to try to hunt him down today and find out what that was. Thanks.
    #4  
Old Unix and Linux 04-12-2004   -   Original Discussion by byblyk
Farlon's Unix or Linux Image
Farlon Farlon is offline
Registered User
 
Join Date: Apr 2004
Last Activity: 11 May 2004, 10:11 PM EDT
Location: Sweden
Posts: 1
Thanks: 0
Thanked 0 Times in 0 Posts
Im guessing your useing ProFtp?

If thats the case, and you whant to "jail" a user
you could simply change/make a line in the config file

My conf file is in - /etc/proftp.conf
simply put this line in it:

DefaultRoot "~"

that would make the users home dir the absolute root for the user.

it is still possible to login via telnet/ssh/rlogin with that
user and pass. So thats a problem.

Ive tryed to put (in /etc/passwd file) /false instead of like /bash
as shell, but that will only make the ftp to deny access
Sponsored Links
    #5  
Old Unix and Linux 04-12-2004   -   Original Discussion by byblyk
byblyk's Unix or Linux Image
byblyk byblyk is offline
Registered User
 
Join Date: Mar 2004
Last Activity: 20 February 2007, 2:45 PM EST
Posts: 92
Thanks: 0
Thanked 0 Times in 0 Posts
Actuily i'm using Wu-ftp but i'm in the process of setting up my system again so i may this time use ProFtp, just cause it seems to be so popular.
Sponsored Links
Closed


Linux More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
ssh jail user toor13 UNIX for Advanced & Expert Users 2 08-26-2011 11:15 AM
SSH chroot jail problems pokey144 Debian 11 09-09-2010 03:06 AM
SFTP Jail With Sun SSH Not OpenSSH Donkey25 UNIX for Advanced & Expert Users 2 04-22-2010 02:47 PM
How to Jail ftp user kumarmani Solaris 2 06-18-2009 11:24 AM



All times are GMT -4. The time now is 06:36 PM.