Re: [CentOS] RE: chroot over ssh

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



On Wednesday 15 November 2006 19:14, Maciej Zenczykowski wrote:
> I have a yum repository at http://tcs.uj.edu.pl/~buildcentos/ which
> includes the centos ssh rebuilt with a tiny patch which makes sshd chroot
> on login if it sees a /./ in the users home directory.

This is especially nice as a solution for securing ftp/sftp access because you 
can allow ftp chroots the using the same /./ in the passwd file through 
vsftpd (although vsftpd doesn't require libs in the chroot, so it's not a 
"true" chroot).

I assume you are using the chrootssh (http://chrootssh.sourceforge.net) 
project's patch (as that's the name of the directory the rpms are in), which 
is worth mentioning for the security conscious people out there who might 
want to know how this was implemented.  

-- 
- Kevan Benson
- A-1 Networks
_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos

[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux