How do I restrict FTP Access to 'Get' only?

Posted on 2004-04-21
Last Modified: 2010-04-21
How do I limit FTP access so that a specified userid\pwd combination only has 'get' access to a single file \ range of files within Unix?
Question by:Knuks
LVL 40

Accepted Solution

jlevie earned 125 total points
ID: 10877903
To do that you need to set up a chrooted FTP enviornment for that user. What's involved with that depends on what Unix & FTP server you are using.

Expert Comment

ID: 10878858
I always suggest the installation/use of vsftpd. It's a very good (and very secure) ftp server which allows you to do all that very easily.

LVL 48

Expert Comment

ID: 10884074
Also check out PureFTP
Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

LVL 62

Expert Comment

ID: 10891189
Are you sure you wand only GET? What about PORT PASV QUIT ???

Author Comment

ID: 10960018
JLevie - I resolved the answer by another root (apologies for not keeping this thread current).
Your comments related to what I found out so the 125 points are yours.  Thanks for the assistance.

btw - Will not \ can not install 3rd party software - Do not require passive xfer or port commands.
LVL 62

Expert Comment

ID: 10960491
btw having ftp on high ports breaks RFC
LVL 48

Expert Comment

ID: 10973695
What Unix flavour are you running?

Featured Post

Free Tool: Postgres Monitoring System

A PHP and Perl based system to collect and display usage statistics from PostgreSQL databases.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When you do backups in the Solaris Operating System, the file system must be inactive. Otherwise, the output may be inconsistent. A file system is inactive when it's unmounted or it's write-locked by the operating system. Although the fssnap utility…
Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question