FTP security

Hi,

I've got some users that have to upload data to a directory but I would like to prevent them from accessing other directories (sort of chroot to their home-dir). I've given them /usr/bin/false as shell so that they cannot login but they still have "full" access via ftp.
I'm using WU-FTPd on Solaris 2.6

N.
LVL 1
nrosierAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

thoellriCommented:
chmod their "homedirectories" to 700 and only they 9and root) will be able to see the contents and write into the directories. They won't be able to see/read/write into other users directories. Of course, this means that every user has it's own home-directory.

Tobias

0
chris_calabreseCommented:
What you want to do is put these users into the 'guest' class in the ftpaccess file.  This actually does chroot() them into their home directories.  Since there are various ways of making this work, I suggest you go to the wu-ftpd docs for more info.  Or you might want to check out _Managing_Internet_Information_Services by Liu, Peek, Jones, Buus, and Nye, and published by O'Reilly.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
nrosierAuthor Commented:
Thanx a lot, after searching the manual I found it.

N.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Unix OS

From novice to tech pro — start learning today.