Re: [SLUG] restrict SSH/SCP users to certain directories

From: mark@bish.net
Date: Mon Feb 21 2005 - 15:26:45 EST


On Mon, 21 Feb 2005, Doug Koobs wrote:

> I've got a web server set up, and use SCP to upload content. All of the web page
> files are owned by apache:apache, with 775 permissions. I've set up a vendor with an
> account, and made his home directory /var/www/html. I added his account to the
> apache group so he can have full permissions on the files he will be editing,
> uploading, deleting, and so on via SCP.
>
> However, I'm not sure how to restrict him to that directory. I want him to able to
> cd around in /var/www/html and all subdirectories, but I don't want him to be able
> to cd out of the html directory. Short of setting up some kind of chroot
> environment, is there any way to do this?
>
> Doug

If you are giving him shell access to your box you need to do exactly
that if you want to contain him.
-----------------------------------------------------------------------
This list is provided as an unmoderated internet service by Networked
Knowledge Systems (NKS). Views and opinions expressed in messages
posted are those of the author and do not necessarily reflect the
official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 19:25:54 EDT