Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-21 Thread Lars Noodén
Henri Salo wrote: ... Where did you get this information? ... It's a question, hence the question mark. Not a statement of fact, hence the absence of a period. Serves me right for having two topics in the same message. The topic that is more interesting to me is getting group level access

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-21 Thread Henri Salo
On Thu, 21 Feb 2008 14:03:40 +0100 Hannah Schroeter <[EMAIL PROTECTED]> wrote: > Hi! > > On Thu, Feb 21, 2008 at 01:49:02PM +0200, Lars Noodin wrote: > >1) What is the timeline for completely dropping scp? > > I hope never. > > >[...] > > Kind regards, > > Hannah. Where did you get this informati

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-21 Thread Hannah Schroeter
Hi! On Thu, Feb 21, 2008 at 01:49:02PM +0200, Lars Noodin wrote: >1) What is the timeline for completely dropping scp? I hope never. >[...] Kind regards, Hannah.

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-21 Thread Lars Noodén
Josh Grosse wrote: A new sftp chroot restriction environment is now available in -current; you may find the discussion at the OpenBSD Journal helpful: http://undeadly.org/cgi?action=article&sid=20080220110039 1) What is the timeline for completely dropping scp? 2) ChrootDirectory and similar

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-21 Thread Lars Noodén
LeRoy, Ted wrote: ... I'd like to limit the user account access for the other groups, permitting them a shell and a few commands, but no ability to browse the box or do things like cat or cp /etc/passwd. ... In addition to chroot, you'll want to make sure that their login shell is rksh and tha

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-20 Thread Tom Lobato
LeRoy, Ted escreveu: I'm taking a class on system security. We're in teams and we have to allow attacking teams ssh access to our devices. it`s not what you asked, but may be helpful to your task: http://www.securityfocus.com/infocus/1876 Tom Lobato

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-20 Thread Josh Grosse
On Wed, 20 Feb 2008 14:02:34 -0500, LeRoy, Ted wrote > I'm taking a class on system security. We're in teams and we have to > allow attacking teams ssh access to our devices. > > I'd like to limit the user account access for the other groups, > permitting them a shell and a few commands, but no a

Re: ssh_config, chroot, or user rights to restrict user access?

2008-02-20 Thread Jason Crawford
On Wed, Feb 20, 2008 at 2:02 PM, LeRoy, Ted <[EMAIL PROTECTED]> wrote: > I'm taking a class on system security. We're in teams and we have to > allow attacking teams ssh access to our devices. > > I'd like to limit the user account access for the other groups, > permitting them a shell and a few c

ssh_config, chroot, or user rights to restrict user access?

2008-02-20 Thread LeRoy, Ted
I'm taking a class on system security. We're in teams and we have to allow attacking teams ssh access to our devices. I'd like to limit the user account access for the other groups, permitting them a shell and a few commands, but no ability to browse the box or do things like cat or cp /etc/passw