Hi,

>From the keyboard of ???????????? ??????, written on Thu, Feb 17, 2005 at 
>11:42:11AM +0300:
> i need only secure copy, but must give full user shell to user [EMAIL 
> PROTECTED]
> on host B. if attaker take control of A, he can shell to [EMAIL PROTECTED]
> 
> setting /sbin/nologin to shell [EMAIL PROTECTED] scp not work
> 
> what can i do to reduce permission [EMAIL PROTECTED]

You can use rssh from the ports:
$ cat /usr/ports/shells/rssh/pkg-descr 
rssh is a Restricted Secure SHell that allow only the use of sftp or scp.
It could be use when you need an account (and a valid shell) in order to
execute sftp or scp but when you don't want to give the possibility to log
in to this user.

WWW: http://www.pizzashack.org/rssh/index.shtml

- enigmatyc
[EMAIL PROTECTED]
$


Grtz,
--
Eilko.
_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to