...which pretty much blows out the "restricted shell" idea.  I vaguely recall 
when I first used it on real UNIX, it DID let you cd BELOW your home directory, 
but the current incarnation in bash doesn't let you cd at ALL.

You can MAKE subdirectories, but you can't access them.  Weird.  You also lose 
the ability to redirect output via ">", "<", and pipe.

Even more curious, the manual says you can't specify file paths containing an 
initial /, but I WAS able to cat /etc/passwd from a restricted shell.  I guess 
they really mean PROGRAM paths.

So in the words of Emily Latella:  "Never mind".

> -----Original Message-----
> From: Linux on 390 Port [mailto:[EMAIL PROTECTED] 
> Behalf Of Tom
> Duerbusch
> Sent: Friday, May 20, 2005 11:50 AM
> To: LINUX-390@VM.MARIST.EDU
> Subject: Re: [LINUX-390] Linux default permissions
> 
> 
> That would work but I do need them to be able to CD to their
> subdirectories.
> 
> Tom Duerbusch
> THD Consulting
> 
> >>> Lloyd Fuller <[EMAIL PROTECTED]> 05/20/05 10:21 AM >>>
> On Fri, 20 May 2005 10:12:15 -0500, Tom Duerbusch wrote:
> 
> 
> First, I am not a Linux user, so take this with a LARGE grain of salt.
> 
> For those users that you want to restrict, can't you change their
> profiles to alias cd so it does nothing?  Or replace
> cd in their /bin with a new program that just exits.
> 
> ----------------------------------------------------------------------
> For LINUX-390 subscribe / signoff / archive access instructions,
> send email to [EMAIL PROTECTED] with the message: INFO LINUX-390
> or visit
> http://www.marist.edu/htbin/wlvindex?LINUX-390
> 
> ----------------------------------------------------------------------
> For LINUX-390 subscribe / signoff / archive access instructions,
> send email to [EMAIL PROTECTED] with the message: INFO 
> LINUX-390 or visit
> http://www.marist.edu/htbin/wlvindex?LINUX-390
>
--------------------------------------------------------

If you are not an intended recipient of this e-mail, please notify the sender, 
delete it and do not read, act upon, print, disclose, copy, retain or 
redistribute it. Click here for important additional terms relating to this 
e-mail.     http://www.ml.com/email_terms/
--------------------------------------------------------

----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390

Reply via email to