LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 10-19-2011, 09:48 AM   #1
diamond_D
Member
 
Registered: Jul 2005
Posts: 51

Rep: Reputation: 0
OpenSSH and Chroot question


I'm looking for suggestions on the best way to implement the following with security in mind. I've been using Linux for about a year so this is my most daunting task yet.

I'm building a torrent seedbox that will have the ability to run multiple instances for a mulit user setup. I want to have it customized so each user is isolated and can only see their directories with no ability to browse the entire filesystem. I want to use openSSH sftp so the client can connect via winscp from a windows box. Also, I need to find a way to give the user the ability to stop or start the binary or control the daemon of the torrent application as well.

I've read about the functionality of chroot jails and was originally intending to use the chroot directory feature of openSSH but I need the ability for the user to be able to control the specified daemon. Can this be done with some sort of login script, remote launch script or through a restricted shell? Some of the chroot jail configurations involve copying shared libraries and other dependencies over to the jail directories and it all seems a bit overwhelming however I'm willing to learn. Just hoping somebody will give me some direction to see if I'm doing it the best way with security in mind. It's ultimately a learning project as after a year I'm hooked on 'nix.

Regards,
 
Old 10-21-2011, 11:56 PM   #2
hedron
Member
 
Registered: Jul 2009
Location: NYC
Distribution: Slackware64-multilib 15.0, SARPI, artix
Posts: 401

Rep: Reputation: 32
I did something similar a few years ago. I used a program called jailkit. It's really good/powerful and easy to use too.

http://olivier.sessink.nl/jailkit/
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] Chroot and Openssh home directory's Mr Pink Linux - Server 7 11-16-2010 09:54 AM
[SOLVED] openssh chroot passwd tappy Debian 2 06-22-2010 09:10 PM
OpenSSH 4.7+ chroot-ed SFTP and CentOS 5.3 iSpaZZZ^ Linux - Software 2 06-04-2010 09:51 AM
chroot jail w/ openssh problems goillini Linux - Security 15 07-14-2008 04:49 PM
Making openSSH chroot users tunedLow Linux - Networking 5 02-25-2003 04:31 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 06:43 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration