Solved

Urgent : How to disable sftp on AIX

Posted on 2011-09-23
2
1,690 Views
Last Modified: 2013-11-17
Hi, I am having an issue. I activated sftp on aix servers and now, its creating lots of issues on the server.

How can i roll back without creating any risks.

to activate sftp i have used the procedure bellow


echo 'SSHD: ALL' >> /etc/hosts.allow

And then restart the sshd service:

stopsrc -s sshd ; startsrc -s sshd

Open in new window


0
Comment
Question by:cismoney
2 Comments
 
LVL 30

Accepted Solution

by:
Brad Howe earned 500 total points
ID: 36587501
SFTP is just the FTP protocol provided through SSH

Disable / Turn off sftp server

Open /etc/ssh/sshd_config file:
    # vi /etc/ssh/sshd_config

Find line that read as follows:
    Subsystem sftp /usr/lib/openssh/sftp-server

Remove or comment out line by prefixing #:
    # Subsystem sftp /usr/lib/openssh/sftp-server

Save and close the file.
         
Restart sshd service:
# /etc/init.d/sshd restart

Cheers,
Hades666
0
 
LVL 68

Expert Comment

by:woolmilkporc
ID: 36587529
Hi,

what you did with hosts.allow has nothing to do with sftp in particular, but with sshd in general.

If it's this what's causing your issues rather edit /etc/hosts.allow and remove the SSHD line.

Then restart sshd.

wmp
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

A metadevice consists of one or more devices (slices). It can be expanded by adding slices. Then, it can be grown to fill a larger space while the file system is in use. However, not all UNIX file systems (UFS) can be expanded this way. The conca…
Using libpcap/Jpcap to capture and send packets on Solaris version (10/11) Library used: 1.      Libpcap (http://www.tcpdump.org) Version 1.2 2.      Jpcap(http://netresearch.ics.uci.edu/kfujii/Jpcap/doc/index.html) Version 0.6 Prerequisite: 1.      GCC …
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now