- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: vsftpd chroot
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-01-2006 03:39 AM
тАО02-01-2006 03:39 AM
vsftpd chroot
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-01-2006 03:44 AM
тАО02-01-2006 03:44 AM
Re: vsftpd chroot
openssh-4.2p1
openssl-0.9.8a
HP-UX Secure Shell: sftp.c,v A.04.20.004
what /usr/local/sbin/vsftpd
/usr/local/sbin/vsftpd:
$Revision: 92453-07 linker linker crt0.o B.11.47 051005 $
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-01-2006 05:37 AM
тАО02-01-2006 05:37 AM
Re: vsftpd chroot
anonymous_enable=YES
local_enable=YES
write_enable=YES
local_umask=022
dirmessage_enable=YES
connect_from_port_20=YES
xferlog_file=/var/log/vsftpd.log
ftpd_banner=VSFTPD Server 2.03
chroot_list_file=/etc/vsftpd.chroot_list
xferlog_std_format=NO
xferlog_enable=YES
log_ftp_protocol=YES
check_shell=NO
vsftpd_log_file=/var/log/vsftpd.log
userlist_enable=YES
userlist_file=/etc/vsftpd.user_list
userlist_deny=NO
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-01-2006 05:56 AM
тАО02-01-2006 05:56 AM
Re: vsftpd chroot
chroot_local_user=YES
chroot_list_enable=YES
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-01-2006 06:07 AM
тАО02-01-2006 06:07 AM
Re: vsftpd chroot
The other two are disabled, as the documentation reads that having them enabled, then the list works in reverse.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-02-2006 02:34 AM
тАО02-02-2006 02:34 AM
Re: vsftpd chroot
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-21-2006 06:37 AM
тАО02-21-2006 06:37 AM
Re: vsftpd chroot
vsftpd is NOT a replacement sftp server (is it ?)
rather it is a conventional ftp server (ports 21 and 20) which implements the "AUTH TLS" and "PROT P" extensions to the ftp protocol, thus encrypting command or data or both.
so yes, a remote sftp client will connect to openssh/sftpd, not vsftpd.
a decent client for talking to vsftpd might be e.g. CoreFTP lite.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-21-2006 06:45 AM
тАО02-21-2006 06:45 AM
Re: vsftpd chroot
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-21-2006 07:50 AM
тАО02-21-2006 07:50 AM
Re: vsftpd chroot
... and I should have apologised for not actually answering the original question:
No, I haven't managed to get vsftpd to work chroot-ed
... and yes I agree that chroot-ing in general is harder than it should be.
I am leaning more in the direction of SELINUX, where you define a policy which severely restricts what a given executable can do. Not being able to read or write a file outside the homedir, seems as close to chroot as makes no difference.
p.s. should have mentioned that CoreFTP Lite *can* also be an sftp client, tho' that ain't what I use it for.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-22-2006 01:19 AM
тАО02-22-2006 01:19 AM