Dariush Pietrzak wrote:
>> > Can't SSH run in chroot ?
>> sorry, I made a mistake... I've meant that it allows shell login while I
>> wanted to disable it.
> Well... if you don't want shell logins you can't use hacks like scp/sftp,
> but you can use restricted shell like scponly.
> I'd recommend
Dariush Pietrzak wrote:
>> > Can't SSH run in chroot ?
>> sorry, I made a mistake... I've meant that it allows shell login while I
>> wanted to disable it.
> Well... if you don't want shell logins you can't use hacks like scp/sftp,
> but you can use restricted shell like scponly.
> I'd recommend
> > Can't SSH run in chroot ?
> sorry, I made a mistake... I've meant that it allows shell login while I
> wanted to disable it.
Well... if you don't want shell logins you can't use hacks like scp/sftp,
but you can use restricted shell like scponly.
I'd recommend proftpd with tls, but it does no
> > Can't SSH run in chroot ?
> sorry, I made a mistake... I've meant that it allows shell login while I
> wanted to disable it.
Well... if you don't want shell logins you can't use hacks like scp/sftp,
but you can use restricted shell like scponly.
I'd recommend proftpd with tls, but it does no
Yogesh Sharma wrote:
> Can't SSH run in chroot ?
sorry, I made a mistake... I've meant that it allows shell login while I
wanted to disable it.
Bye
--
Haim
Yogesh Sharma wrote:
> Can't SSH run in chroot ?
sorry, I made a mistake... I've meant that it allows shell login while I
wanted to disable it.
Bye
--
Haim
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]
Hello,
I have sshd running on a woody box in a chroot environment.
It's not my running for remote access, but for data collection so.
Just got to make sure to keep up with openssh security holes.
I downloaded the sources and compiled it myself.
I have privilege seperation disabled.
On Tue, 2003
On Tue, Oct 14, 2003 at 11:31:10AM -0700, Yogesh Sharma wrote:
> Can't SSH run in chroot ?
not easily with priviliege separation turned on?
--
Dariush Pietrzak,
Key fingerprint = 40D0 9FFB 9939 7320 8294 05E0 BCC7 02C4 75CC 50D9
Can't SSH run in chroot ?
Haim Ashkenazi wrote:
this is a good setup, but I want chroot enviroment.
thanx
--
Haim
Hello,
I have sshd running on a woody box in a chroot environment.
It's not my running for remote access, but for data collection so.
Just got to make sure to keep up with openssh security holes.
I downloaded the sources and compiled it myself.
I have privilege seperation disabled.
On Tue, 2003
thanx, everyone.
I've downloaded and compiled scponly from unstable and it looks very nice.
Bye
--
Haim
Haim Ashkenazi wrote:
> Hi
>
> I want to allow a lot of users to be able to upload/download fies, with
> the following restrictions:
>
> 1. encrypted (ssh/ssl)
> 2. key based authentication
Yogesh Sharma wrote:
> Hi,
>
> I am not if I got your question correct but here how my setup is:
>
> FTP access disabled
> Running sshd which only supports certificate based auth
> I copied my public certificate in my home dir
> Now I can do sftp using certificates. So I don't have to type passw
On Tue, Oct 14, 2003 at 11:31:10AM -0700, Yogesh Sharma wrote:
> Can't SSH run in chroot ?
not easily with priviliege separation turned on?
--
Dariush Pietrzak,
Key fingerprint = 40D0 9FFB 9939 7320 8294 05E0 BCC7 02C4 75CC 50D9
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of
Can't SSH run in chroot ?
Haim Ashkenazi wrote:
this is a good setup, but I want chroot enviroment.
thanx
--
Haim
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]
Hi,
I am not if I got your question correct but here how my setup is:
FTP access disabled
Running sshd which only supports certificate based auth
I copied my public certificate in my home dir
Now I can do sftp using certificates. So I don't have to type password
(if my certificate was created w
thanx, everyone.
I've downloaded and compiled scponly from unstable and it looks very nice.
Bye
--
Haim
Haim Ashkenazi wrote:
> Hi
>
> I want to allow a lot of users to be able to upload/download fies, with
> the following restrictions:
>
> 1. encrypted (ssh/ssl)
> 2. key based authentication
Yogesh Sharma wrote:
> Hi,
>
> I am not if I got your question correct but here how my setup is:
>
> FTP access disabled
> Running sshd which only supports certificate based auth
> I copied my public certificate in my home dir
> Now I can do sftp using certificates. So I don't have to type passw
Hi,
> 1. encrypted (ssh/ssl)
proftpd can do that.
> 2. key based authentication, no password!!!
that's trickier, there are FTP/TLS servers with that capability,
but I doubt you'll find anything in woody that can do that besides ssh.
> 3. preferebly without the option for login (if used with
I've used scponly and liked it ...
http://www.sublimation.org/scponly/
- Original Message -
From: "Haim Ashkenazi" <[EMAIL PROTECTED]>
To:
Sent: Tuesday, October 14, 2003 10:08 AM
Subject: Need advise aobut allowing only sftp on woody
> Hi
>
> I want to a
Hi
I want to allow a lot of users to be able to upload/download fies, with the
following restrictions:
1. encrypted (ssh/ssl)
2. key based authentication, no password!!!
3. preferebly without the option for login (if used with scp, sftp)
4. chroot
The obvious way was using sftp, but woody doesn'
Hi,
I am not if I got your question correct but here how my setup is:
FTP access disabled
Running sshd which only supports certificate based auth
I copied my public certificate in my home dir
Now I can do sftp using certificates. So I don't have to type password
(if my certificate was created wi
Hi,
> 1. encrypted (ssh/ssl)
proftpd can do that.
> 2. key based authentication, no password!!!
that's trickier, there are FTP/TLS servers with that capability,
but I doubt you'll find anything in woody that can do that besides ssh.
> 3. preferebly without the option for login (if used with
I've used scponly and liked it ...
http://www.sublimation.org/scponly/
- Original Message -
From: "Haim Ashkenazi" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Tuesday, October 14, 2003 10:08 AM
Subject: Need advise aobut allowing only sftp on woody
>
Hi
I want to allow a lot of users to be able to upload/download fies, with the
following restrictions:
1. encrypted (ssh/ssl)
2. key based authentication, no password!!!
3. preferebly without the option for login (if used with scp, sftp)
4. chroot
The obvious way was using sftp, but woody doesn'
24 matches
Mail list logo