- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Restrictive Telnet Account
Categories
Company
Local Language
Forums
Discussions
Knowledge Base
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Knowledge Base
Forums
Discussions
- Cloud Mentoring and Education
- Software - General
- HPE OneView
- HPE Ezmeral Software platform
- HPE OpsRamp
Knowledge Base
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-20-2003 07:56 PM
11-20-2003 07:56 PM
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-20-2003 08:03 PM
11-20-2003 08:03 PM
SolutionAlternatively you could get the users .profile to run "chroot" which allows you to put a logical "/" directory wherever you fancy (most usefully over the users home directory) and build a "/bin" and "/etc" etc etc under that.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-20-2003 08:35 PM
11-20-2003 08:35 PM
Re: Restrictive Telnet Account
Have to take care they don't shell out though, even from ftp a canny user could run up a shell.
Note that when using rsh, they can only run commands in their local directory, or in their PATH (which they cannot change).
Therefore the sh-posix manpage suggests creating a /usr/rbin directory, copying your permitted commands into it, and making this the only entry in $PATH.
-- Graham
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-21-2003 06:48 AM
11-21-2003 06:48 AM
Re: Restrictive Telnet Account
http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=266739
- John
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-21-2003 08:59 AM
11-21-2003 08:59 AM
Re: Restrictive Telnet Account
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-22-2003 01:17 AM
11-22-2003 01:17 AM
Re: Restrictive Telnet Account
Hazem
Sr. Unix Admin
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-22-2003 08:16 AM
11-22-2003 08:16 AM
Re: Restrictive Telnet Account
Thanks for your advice, but I did what the others had suggested and it works fine for my needs. I just needed an account for our networking team to be able to test doing three commands from my host, and that's all they can now do.
To the others who offered suggestions - many thanks. It's doing the job fine. I am storing the .sh_history, so I'll hopefully see if they're trying to do anything "naughty"!!
Cheers,
Mike.