LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-07-2013, 10:54 PM   #1
newbie14
Member
 
Registered: Sep 2011
Posts: 646

Rep: Reputation: Disabled
Limited user access with key control to sftp only?


Dear All,
I need to give access to user to only sftp some files into a particular folder in /var/www/html/folder1. User will be highly restricted to just this folder and nothing else and also disable everything else possible. I am using key based login. So how to go about it. Must I share my key ?
 
Old 10-08-2013, 02:56 AM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
'man ssh-keygen' tells you that the users ~/.ssh/id_{d,r}sa.pub file(s) should be added to ~/.ssh/authorized_keys on all machines where the user wishes to log in using public key authentication.
 
Old 10-08-2013, 03:03 AM   #3
newbie14
Member
 
Registered: Sep 2011
Posts: 646

Original Poster
Rep: Reputation: Disabled
Dear Unspawn,
I will try that. Anyway how to limit this use to just sftp of a particular folder and nothing else even no ssh etc.
 
Old 10-08-2013, 03:21 AM   #4
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
You've been here long enough to know you can search LQ before asking: https://www.linuxquestions.org/quest...ss-4175479822/
 
Old 10-08-2013, 03:30 AM   #5
newbie14
Member
 
Registered: Sep 2011
Posts: 646

Original Poster
Rep: Reputation: Disabled
Dear Unspawn,
Sorry for that actually I am already looking into this method of modifying /etc/ssh/sshd_config and have google it. Will update incase I am stucked.
 
Old 10-08-2013, 03:40 AM   #6
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Don't be sorry. There's quite a few threads on the subject so you should be able to make things work. If you aren't able to then do post your sshd_config along with a description of what you changed from the default.
 
Old 10-08-2013, 03:43 AM   #7
newbie14
Member
 
Registered: Sep 2011
Posts: 646

Original Poster
Rep: Reputation: Disabled
Dear Unspawn,
Thank you for the tips I saw quite a number of post on this even on google. Will give a try first.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
creating limited sftp access barry1946 Linux - Security 3 10-07-2013 07:21 AM
Create new user with limited folder access ITTrucker Linux - Newbie 6 03-05-2013 10:15 AM
sftp user with limited ssh permissions to autologin using publickey blazingrock4u Linux - Security 1 10-18-2010 11:52 AM
limited access user sunlinux Linux - Newbie 3 06-15-2009 12:26 PM
Limited User Access Jakeh2k1 Red Hat 1 06-07-2005 07:03 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 07:22 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration