Hi, >From the keyboard of ???????????? ??????, written on Thu, Feb 17, 2005 at >11:42:11AM +0300: > i need only secure copy, but must give full user shell to user [EMAIL > PROTECTED] > on host B. if attaker take control of A, he can shell to [EMAIL PROTECTED] > > setting /sbin/nologin to shell [EMAIL PROTECTED] scp not work > > what can i do to reduce permission [EMAIL PROTECTED]
You can use rssh from the ports: $ cat /usr/ports/shells/rssh/pkg-descr rssh is a Restricted Secure SHell that allow only the use of sftp or scp. It could be use when you need an account (and a valid shell) in order to execute sftp or scp but when you don't want to give the possibility to log in to this user. WWW: http://www.pizzashack.org/rssh/index.shtml - enigmatyc [EMAIL PROTECTED] $ Grtz, -- Eilko. _______________________________________________ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"