Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Restrict Commands with rssh for sftp use
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
mamars
n00b
n00b


Joined: 31 Mar 2005
Posts: 10

PostPosted: Tue Aug 23, 2005 10:36 am    Post subject: Restrict Commands with rssh for sftp use Reply with quote

Hallo!

I've set up a sftp server with rssh, also tried scponly but I think I keep with rssh.
My user based configuration with rssh to allow/disallow sftp,scp,cvs and so on and my chrooting works great. However, I am searching for a method to disallow commands like chmod inside the chroot jail. Is there someone who has an idea on this issue? I googled around but didn't find anything. Hope someone may help.
Greets
mamars
Back to top
View user's profile Send private message
MALON3
Tux's lil' helper
Tux's lil' helper


Joined: 16 Jan 2004
Posts: 87

PostPosted: Tue Aug 23, 2005 12:45 pm    Post subject: Reply with quote

U can use grsec for this.
With grsec u can enable a lot of chroot-jail restrictions how disable chmod, mknod and so on...

Look at the Gentoo Hardened Project for more informations
http://www.gentoo.org/proj/en/hardened/

gretting malon3
Back to top
View user's profile Send private message
mamars
n00b
n00b


Joined: 31 Mar 2005
Posts: 10

PostPosted: Tue Aug 23, 2005 1:09 pm    Post subject: Reply with quote

Thank you... I will have a look at it. I'm already using the hardened-sources, just didn't start using grsecurity :oops: .
Although it is not the easy way I was hoping to find :roll:

Greets
mamars
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum