Re: Fwd: scp, no ssh

2002-01-12 Thread Marcel Hicking
On 11 Jan 2002, at 0:06, martin f krafft wrote: > > --+xNpyl7Qekk2NvDX > Content-Type: text/plain; charset=iso-8859-15 > Content-Disposition: inline > Content-Transfer-Encoding: quoted-printable > > also sprach Marcel Hicking <[EMAIL PROTECTED]> > [2002.01.10.1646 +0100]: > /bin/true will log you

Re: Fwd: scp, no ssh

2002-01-12 Thread Marcel Hicking
On 11 Jan 2002, at 0:06, martin f krafft wrote: > > --+xNpyl7Qekk2NvDX > Content-Type: text/plain; charset=iso-8859-15 > Content-Disposition: inline > Content-Transfer-Encoding: quoted-printable > > also sprach Marcel Hicking <[EMAIL PROTECTED]> > [2002.01.10.1646 +0100]: > /bin/true will log you

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Marcel Hicking <[EMAIL PROTECTED]> [2002.01.10.1646 +0100]: > /bin/true will log you out right away, > and therefore you cannot start scp. > I've doublechecked this yesterday, and > even tried to put "exit " into the .bashrc > *This* did work fine, no ssh anymore, but scp > works. But!

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Marcel Hicking <[EMAIL PROTECTED]> [2002.01.10.1646 +0100]: > What about sftp? > Clients should be available by now. I mean, > Windooze clients ;-) > As secure as scp, as restricted as ftp. but you still need to enable a shell and ssh, because sftp does nothing else but pipe over ssh..

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Marcel Hicking <[EMAIL PROTECTED]> [2002.01.10.1646 +0100]: > /bin/true will log you out right away, > and therefore you cannot start scp. > I've doublechecked this yesterday, and > even tried to put "exit " into the .bashrc > *This* did work fine, no ssh anymore, but scp > works. But!

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Marcel Hicking <[EMAIL PROTECTED]> [2002.01.10.1646 +0100]: > What about sftp? > Clients should be available by now. I mean, > Windooze clients ;-) > As secure as scp, as restricted as ftp. but you still need to enable a shell and ssh, because sftp does nothing else but pipe over ssh.

Re: Fwd: scp, no ssh

2002-01-10 Thread Nathan E Norman
On Thu, Jan 10, 2002 at 04:46:26PM +0100, Marcel Hicking wrote: > No way. > /bin/true will log you out right away, > and therefore you cannot start scp. > I've doublechecked this yesterday, and > even tried to put "exit " into the .bashrc > *This* did work fine, no ssh anymore, but scp > works. But

Re: Fwd: scp, no ssh

2002-01-10 Thread Marcel Hicking
nd rm to remove it. So I'd say: No way, indeed. Cheers, Marcel On 9 Jan 2002, at 21:19, Tim Quinlan wrote: > how about setting the user's shell to /bin/true. this > allows ftp, but no login shell. so it may work for scp as > well. > > -- Forwarded Message

Re: Fwd: scp, no ssh

2002-01-10 Thread Marcel Hicking
ay work for scp as > well. > > -- Forwarded Message ---------- > Subject: scp, no ssh > Date: Wed, 9 Jan 2002 09:49:10 +0100 > From: Robert Janusz <[EMAIL PROTECTED]> > To: debian-isp@lists.debian.org > > > How to allow, for some users' IPs, only

Re: Fwd: scp, no ssh

2002-01-10 Thread Felipe Alvarez Harnecker
What about setting rbash as login shell and then PATH=/usr/local/bin in .bash_profile and then ln -s /usr/bin/scp /usr/local/bin/scp and and and then chattr +i .bash_profile That is what i do and it works ( as far as i know .. ) -- __

Re: Fwd: scp, no ssh

2002-01-10 Thread Nathan E Norman
On Thu, Jan 10, 2002 at 04:46:26PM +0100, Marcel Hicking wrote: > No way. > /bin/true will log you out right away, > and therefore you cannot start scp. > I've doublechecked this yesterday, and > even tried to put "exit " into the .bashrc > *This* did work fine, no ssh anymore, but scp > works. Bu

Re: Fwd: scp, no ssh

2002-01-10 Thread Marcel Hicking
nd rm to remove it. So I'd say: No way, indeed. Cheers, Marcel On 9 Jan 2002, at 21:19, Tim Quinlan wrote: > how about setting the user's shell to /bin/true. this > allows ftp, but no login shell. so it may work for scp as > well. > > -- Forwarded Message

Re: Fwd: scp, no ssh

2002-01-10 Thread Marcel Hicking
ay work for scp as > well. > > -- Forwarded Message ---------- > Subject: scp, no ssh > Date: Wed, 9 Jan 2002 09:49:10 +0100 > From: Robert Janusz <[EMAIL PROTECTED]> > To: [EMAIL PROTECTED] > > > How to allow, for some users' IPs, only scp an

Re: Fwd: scp, no ssh

2002-01-10 Thread Felipe Alvarez Harnecker
What about setting rbash as login shell and then PATH=/usr/local/bin in .bash_profile and then ln -s /usr/bin/scp /usr/local/bin/scp and and and then chattr +i .bash_profile That is what i do and it works ( as far as i know .. ) -- __

Re: scp, no ssh

2002-01-10 Thread Bennet Uk
Hi, Found something which looks like it might do the trick: http://www.sublimation.org/scponly/ Haven't tried it myself, though... Regards, Bennet On Thu, 2002-01-10 at 05:51, Jeff Norman wrote: > > Now, the trick is to replace bob's shell with a (perl?) script that > takes -c argument passed

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Joel Michael <[EMAIL PROTECTED]> [2002.01.10.0323 +0100]: > This is true, but you can still (probably) use ssh to execute commands, > like /bin/sh, and effectively get a shell. that's not possible either. try it. -- martin; (greetings from the heart of the sun.) \

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Gernot Glawe <[EMAIL PROTECTED]> [2002.01.10.0905 +0100]: > What about setting ssh and scp to a diffenrent user an make appropiate > sudo settings ? and how do you want to get that working remotely? i supposed you could create a shell script scp and a shell script ssh that would call s

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Tim Quinlan <[EMAIL PROTECTED]> [2002.01.10.0319 +0100]: > how about setting the user's shell to /bin/true. this allows ftp, but no > login shell. so it may work for scp as well. nope. as i said, scp uses ssh and needs a shell -- martin; (greetings from the heart of t

Re: scp, no ssh

2002-01-10 Thread Bennet Uk
Hi, Found something which looks like it might do the trick: http://www.sublimation.org/scponly/ Haven't tried it myself, though... Regards, Bennet On Thu, 2002-01-10 at 05:51, Jeff Norman wrote: > > Now, the trick is to replace bob's shell with a (perl?) script that > takes -c argument passe

Re: Fwd: scp, no ssh

2002-01-10 Thread Gernot Glawe
What about setting ssh and scp to a diffenrent user an make appropiate sudo settings ? > Resent-Sender: [EMAIL PROTECTED] > Resent-Bcc: > Resent-Date: Thu, 10 Jan 2002 03:24:06 +0100 > > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this al

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Joel Michael <[EMAIL PROTECTED]> [2002.01.10.0323 +0100]: > This is true, but you can still (probably) use ssh to execute commands, > like /bin/sh, and effectively get a shell. that's not possible either. try it. -- martin; (greetings from the heart of the sun.) \

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Gernot Glawe <[EMAIL PROTECTED]> [2002.01.10.0905 +0100]: > What about setting ssh and scp to a diffenrent user an make appropiate > sudo settings ? and how do you want to get that working remotely? i supposed you could create a shell script scp and a shell script ssh that would call

Re: Fwd: scp, no ssh

2002-01-10 Thread martin f krafft
also sprach Tim Quinlan <[EMAIL PROTECTED]> [2002.01.10.0319 +0100]: > how about setting the user's shell to /bin/true. this allows ftp, but no > login shell. so it may work for scp as well. nope. as i said, scp uses ssh and needs a shell -- martin; (greetings from the heart of

Re: Fwd: scp, no ssh

2002-01-10 Thread Gernot Glawe
What about setting ssh and scp to a diffenrent user an make appropiate sudo settings ? > Resent-Sender: [EMAIL PROTECTED] > Resent-Bcc: > Resent-Date: Thu, 10 Jan 2002 03:24:06 +0100 > > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this al

Re: scp, no ssh

2002-01-09 Thread Jeff Norman
On Wed, 2002-01-09 at 21:23, Joel Michael wrote: > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this allows ftp, but no > > login shell. so it may work for scp as well. > > > This is true, but you can still (probably) use ssh to execute co

Re: Fwd: scp, no ssh

2002-01-09 Thread Tim Quinlan
On Wednesday 09 January 2002 21:23, Joel Michael wrote: > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this allows ftp, but no > > login shell. so it may work for scp as well. > > This is true, but you can still (probably) use ssh to execute

Re: scp, no ssh

2002-01-09 Thread Jeff Norman
On Wed, 2002-01-09 at 21:23, Joel Michael wrote: > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this allows ftp, but no > > login shell. so it may work for scp as well. > > > This is true, but you can still (probably) use ssh to execute c

Re: Fwd: scp, no ssh

2002-01-09 Thread Joel Michael
On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > how about setting the user's shell to /bin/true. this allows ftp, but no > login shell. so it may work for scp as well. > This is true, but you can still (probably) use ssh to execute commands, like /bin/sh, and effectively get a shell. -- Joel

Fwd: scp, no ssh

2002-01-09 Thread Tim Quinlan
how about setting the user's shell to /bin/true. this allows ftp, but no login shell. so it may work for scp as well. -- Forwarded Message -- Subject: scp, no ssh Date: Wed, 9 Jan 2002 09:49:10 +0100 From: Robert Janusz <[EMAIL PROTECTED]> To: debian-isp@lists

Re: Fwd: scp, no ssh

2002-01-09 Thread Tim Quinlan
On Wednesday 09 January 2002 21:23, Joel Michael wrote: > On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > > how about setting the user's shell to /bin/true. this allows ftp, but no > > login shell. so it may work for scp as well. > > This is true, but you can still (probably) use ssh to execut

Re: Fwd: scp, no ssh

2002-01-09 Thread Joel Michael
On Thu, 2002-01-10 at 12:19, Tim Quinlan wrote: > how about setting the user's shell to /bin/true. this allows ftp, but no > login shell. so it may work for scp as well. > This is true, but you can still (probably) use ssh to execute commands, like /bin/sh, and effectively get a shell. -- Joe

Fwd: scp, no ssh

2002-01-09 Thread Tim Quinlan
how about setting the user's shell to /bin/true. this allows ftp, but no login shell. so it may work for scp as well. -- Forwarded Message -- Subject: scp, no ssh Date: Wed, 9 Jan 2002 09:49:10 +0100 From: Robert Janusz <[EMAIL PROTECTED]> To: [EMAIL PROTECTE

Re: scp, no ssh

2002-01-09 Thread Michael Blickenstorfer
On Wed, Jan 09, 2002 at 02:38:30PM +0100, martin f krafft wrote: > also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > > How to allow, for some users' IPs, only scp and no ssh? > > i don't think you can, since scp actually uses ssh as its backend... You're right. This is not

Re: scp, no ssh

2002-01-09 Thread martin f krafft
also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > How to allow, for some users' IPs, only scp and no ssh? you *could* disable their passwords, give them DSA identities, and use the authorized_keys file to specify that this identity may only run the scp command... -- martin

Re: scp, no ssh

2002-01-09 Thread martin f krafft
also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > How to allow, for some users' IPs, only scp and no ssh? i don't think you can, since scp actually uses ssh as its backend... -- martin; (greetings from the heart of the sun.) \ echo mailto: !#^."<*>"|tr "

Re: scp, no ssh

2002-01-09 Thread Michael Blickenstorfer
On Wed, Jan 09, 2002 at 02:38:30PM +0100, martin f krafft wrote: > also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > > How to allow, for some users' IPs, only scp and no ssh? > > i don't think you can, since scp actually uses ssh as its backend... You're right. This is not

Re: scp, no ssh

2002-01-09 Thread martin f krafft
also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > How to allow, for some users' IPs, only scp and no ssh? you *could* disable their passwords, give them DSA identities, and use the authorized_keys file to specify that this identity may only run the scp command... -- marti

Re: scp, no ssh

2002-01-09 Thread martin f krafft
also sprach Robert Janusz <[EMAIL PROTECTED]> [2002.01.09.0949 +0100]: > How to allow, for some users' IPs, only scp and no ssh? i don't think you can, since scp actually uses ssh as its backend... -- martin; (greetings from the heart of the sun.) \ echo mailto: !#^."<*>"|tr

scp, no ssh

2002-01-09 Thread Robert Janusz
How to allow, for some users' IPs, only scp and no ssh?

scp, no ssh

2002-01-09 Thread Robert Janusz
How to allow, for some users' IPs, only scp and no ssh? -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]