On 01/18/2011 06:46 PM, Bill Watson wrote:
The goal was to have a master+passworded user be able to upload files via
ftp, and to have a user+password user be only able to read from the same
folder. In this way, all such users cannot modify my stuff, but I can.

[...]

Sounded to me like /var/ftp/go would not allow writes, being a (ro,bind)
filesystem. I was wrong.

Anybody know what I goofed up?

You can't mount RO with bind in one place and and RW in another. From the man page for mount: "Note that the filesystem mount options will remain the same as those on the original mount point, and cannot be changed by passing the -o option".

IOW: It just doesn't work that way.

The generic way to do what you want is using group ownership. Put yourself in one group, the users in another and make the directories and files writable only by the owner, readable by the group, and not readable or writable by anyone else. Use umask 0027 for the master account so that files and directories are created with the right permissions.

Depending on which FTP daemon you are using, you can also put users directly into readonly groups via its configuration options as well.

--
Benjamin Franz

_______________________________________________
rhelv5-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/rhelv5-list

Reply via email to