Thank you guys for the answers. The "Match group sftp-only,!admin" didn't worked with a user which is in both group. But it shows me that this is not a good idea. :) I've modified the rules ... so only "Match group sftp-only" left in the config ... the users in the admin group have to use their private key to connect to SFTP. This is an acceptable compromise. Thank you for your help and your time! Regards, Csaba -----Original Message----- From: openssh-unix-dev [mailto:openssh-unix-dev-bounces+markcs=gwyll.eu@xxxxxxxxxxx] On Behalf Of Damien Miller Sent: Wednesday, June 25, 2014 7:09 AM "Match group sftp-only,!admin" for the second case might and removing the "ForceCommand bash" from the first might work. _______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@xxxxxxxxxxx https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev
<<attachment: winmail.dat>>
_______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@xxxxxxxxxxx https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev