LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 01-29-2005, 12:14 AM   #1
junkken
LQ Newbie
 
Registered: Jul 2004
Posts: 7

Rep: Reputation: 0
rbash - internal commands


With PATH="" set, rbash still permits pwd. Does anyone know if or where it is documented exactly what internal non-path commands rbash permits? Thanks!
 
Old 01-31-2005, 09:53 AM   #2
junkken
LQ Newbie
 
Registered: Jul 2004
Posts: 7

Original Poster
Rep: Reputation: 0
I am trying to set up a user which can do absolutely nothing after logging in, but am alarmed to find even a restricted shell provides surprising capabilities. Typing "help" lists a variety of stuff one can do. I want to control every thing the user can do starting with nothing. Anyone have any thoughts? Any good reading on the subject other than the man page.??

Last edited by junkken; 01-31-2005 at 09:54 AM.
 
Old 01-31-2005, 02:24 PM   #3
peacebwitchu
Member
 
Registered: Apr 2004
Distribution: Debian
Posts: 185

Rep: Reputation: 30
You will need to recompile bash with these options ./configure --enable-minimal-config --enable-restricted
I would recommend installing it elsewhere so you will actually have two bash commands, since this takes out alot of features you are accustomed to.
 
Old 01-31-2005, 03:05 PM   #4
peacebwitchu
Member
 
Registered: Apr 2004
Distribution: Debian
Posts: 185

Rep: Reputation: 30
The above does not work correctly. Sorry. But you can disable the builtins with "enable -n pwd" you can get more information by doing a "man builtins".
 
Old 01-31-2005, 04:43 PM   #5
junkken
LQ Newbie
 
Registered: Jul 2004
Posts: 7

Original Poster
Rep: Reputation: 0
Thanks,
Looks like I will have to enable -n 57 different commands..? Is there an easier way to exclude all with the possible exception of exit?

After builtins are unavailable, will this restricted shell be secure enough to allow unknown users to access the box? Or will there be more safeguards needed?
 
Old 02-02-2005, 08:46 AM   #6
junkken
LQ Newbie
 
Registered: Jul 2004
Posts: 7

Original Poster
Rep: Reputation: 0
Here is an article which suggests rbash may not be secure enough.
Article

Does anyone know how ISP's setup their login accounts so users cant do bad things, while still allowing some commands?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
internal webserver Sern Linux - Networking 4 06-11-2005 12:26 PM
Installation of internal HP DAT 40i DDS internal tape drive netkepala Linux - Hardware 3 11-08-2004 12:22 PM
internal sparq John Mullins Linux - Hardware 5 09-19-2003 05:45 AM
Internal Modem Arot Linux - Hardware 1 09-01-2003 05:12 PM
rbash doesn't work on RH8 patrickh99 Linux - Security 6 06-02-2003 10:11 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:21 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration