[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] RaQ4 and Raq550 , restrict telnet and/or ssh logins to ONLY their own site folder ?
- Subject: Re: [cobalt-users] RaQ4 and Raq550 , restrict telnet and/or ssh logins to ONLY their own site folder ?
- From: Bruce Timberlake <bruce@xxxxxxxxxx>
- Date: Fri Jan 24 18:00:07 2003
- Organization: BRTNet.org
- List-id: Mailing list for users to share thoughts on Sun Cobalt products. <cobalt-users.list.cobalt.com>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
> It can be done with restricted shell
Very kewl... learned (about) something new today!
In my _brief_ experiments, it appears that there are multiple bash
RPMS installed on my RaQ 4:
bash-1.14.7-22
bash2-2.03-8
bash2-doc-2.03-8
And the sample script to prove 'restrictedness' from TLDP (at
http://www.tldp.org/LDP/abs/html/restricted-sh.html) doesn't appear
to work on the RaQ 4... (-r is an unknown option)
But on my desktop machine running RH8 with these bash versions:
bash-doc-2.05b-5
bash-2.05b-5
it works just as advertised...
I definitely need to play with this a bit more, to see how/if it
restricts access to 'external' apps, commands, etc. But it
definitely seems a lot simpler than setting up chroot stuff...
Thanks!
- --
Bruce Timberlake
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
iD8DBQE+MeA6vLA2hUZ9kgwRAvUtAJwI2ZIkYkYtqssf0uxCe70fLmbN5ACfRKuj
AukgkaWN/ZRx0gK5s3ZFfOg=
=d6rL
-----END PGP SIGNATURE-----