LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-22-2008, 08:58 PM   #1
a2vr6
Member
 
Registered: Aug 2006
Posts: 46

Rep: Reputation: 15
Question on creating SFTP user in RHEL 4.0


I was wondering if there is a way to create an SFTP user that only has read and write access to there home directory. Would the following be correct?

useradd <user> -d /home/<user> -s /usr/bin/rssh
 
Old 07-23-2008, 09:08 AM   #2
a2vr6
Member
 
Registered: Aug 2006
Posts: 46

Original Poster
Rep: Reputation: 15
Anyone able to help?
 
Old 07-23-2008, 10:23 AM   #3
chort
Senior Member
 
Registered: Jul 2003
Location: Silicon Valley, USA
Distribution: OpenBSD 4.6, OS X 10.6.2, CentOS 4 & 5
Posts: 3,660

Rep: Reputation: 76
From a bit of Googling it looks more complex than that. You need to setup the chroot environment, amongst other things. The documentation should be in /usr/share/doc or /usr/local/share/doc.
 
Old 07-23-2008, 12:07 PM   #4
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
With OpenSSH 4.8p1 (OpenSSH actually is at 5.0p1 right now) there's now the builtin "ChrootDirectory" directive which means it doesn't need any third part apps anymore (announcement: http://undeadly.org/cgi?action=artic...20080220110039, usage example: http://www.debian-administration.org/articles/590). If you don't want to or can't use that version there's ways to chroot a user using Rssh (seriously deprecated) or scponlyc from Scponly (example: http://geekzine.org/2007/09/28/easy-...-with-scponly/, "hard" example: http://sublimation.org/scponly/wiki/...uildings_Jails). For EL RPMs see DAGs repo.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Creating chroot sftp Jails with Jailkit LXer Syndicated Linux News 0 06-20-2008 05:41 PM
User Creationg : ssh/sftp user jail to $HOME only routers Solaris / OpenSolaris 2 10-29-2007 11:28 PM
sftp user cannot delete Velocity123 Linux - General 1 10-20-2007 01:43 AM
sftp user monitoring? lostlyre Linux - Software 1 07-02-2004 09:36 PM
let a user only connect via sftp FORESTHUS Linux - Security 7 01-16-2004 10:09 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:06 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration