The following header lines retained to affect attribution:
|To: [EMAIL PROTECTED]
|Date: Fri, 15 Jan 1999 08:56:32 +0000
|From: John Riddoch <[EMAIL PROTECTED]>
|Subject: Re: Restricting RSA Authentication.

|Shiloh Costa wrote:
|> What kinds of methods could someone use to only allow 2 or 3 users to have
|> SSH capability, and deny anyone else from creating their own .ssh subdir
|> via FTP?

|> The only way I can think of is to pre-create an .ssh directory, and chown
|> it to root with no write permissions.

        And, also create a root owned file (any name; empty is fine)
        within that directory.  Then, the user can not remove the
        directory---it has contents that the user can not remove.

|Doesn't work; since the user has rwx permission in their home directory,
|they can just delete anything below it.

        Not quite, see above.

|John Riddoch   Email: [EMAIL PROTECTED]        Telephone: (01224)262730
|Room C4, School of Computer and Mathematical Science
|Robert Gordon University, Aberdeen, AB25 1HG
|"Yoda of Borg are we:  Futile is resistance.  Assimilate you, we will"

Randolph J. Herber, [EMAIL PROTECTED], +1 630 840 2966, CD/CDFTF PK-149F,
Mail Stop 318, Fermilab, Kirk & Pine Rds., PO Box 500, Batavia, IL 60510-0500,
USA.  (Speaking for myself and not for US, US DOE, FNAL nor URA.)  (Product,
trade, or service marks herein belong to their respective owners.)

Reply via email to