LinuxQuestions.org
Latest LQ Deal: Linux Power User Bundle
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 03-12-2007, 06:13 AM   #1
Drutten
LQ Newbie
 
Registered: Sep 2006
Posts: 9

Rep: Reputation: 0
FTP and shell access gone after new user added


I run a couple of game servers and as a reward to some people I give them a small user account with ftp and shell access.
Now, I have this user who installed an IRC bouncer. I didnt check it out, and trusted he could be trusted, but when I later tried he managed to:
_ Ruin the vhost for his account
_ Block ftp access
_ Block shell access

I asked him what he did, and he said that he changed the rights on his root to be able to write to it.

I got grumpy and told him I had to remove his account and remake it, because I couldnt figure out what was wrong.
When I did I discovered a .oidentd.conf in his root.
When I moved this I could access his account again.

Well, I removed the user, and remade it.
I configured vhost and got that working.
And ftp and shell access was back again.
I restored his irc bouncer and gave him back a new pw.

Ok, slept over the night.
First thing I tested was his account.
Blocked again .
Vhost was still working.
Also his irc bouncer.

What could be causing this?
Not shure if this person is pretending to be a friend or not, but it feels fishy.

p.s. I tried changing the password in confixx, but the access is still blocked.

If you can help me out I would really appreciate it.

Thanks for your time

/Drutten
 
Old 03-14-2007, 03:31 AM   #2
Drutten
LQ Newbie
 
Registered: Sep 2006
Posts: 9

Original Poster
Rep: Reputation: 0
Out of pure paranoia reading up on what BNC can be used for, I removed the user.
And at the same time made him feel extremelly guilty.
Just as a tip for any other planning on giving out shell accounts: Be aware that BNC can be used to camouflage dodgy activities. It reveils the origin of your server, but hides the users real IP. So if your like me, a little paranoid, I recommend not letting people use BNC on your servers.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
added user / cannot FTP freebies Linux - Software 2 09-22-2005 03:30 AM
New User FTP/SHELL Limitations kihtap Linux - Software 1 03-05-2005 06:00 AM
I lose ftp access when I disable shell access for user captainObvious Linux - General 3 11-13-2004 06:49 PM
reboot so user can access fs space limited by group recently added to? bdp Linux - General 4 09-27-2003 02:21 AM
Running a shell script when a user is added. jayakrishnan Linux - General 5 04-29-2002 03:55 AM


All times are GMT -5. The time now is 01:20 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration