>> What are we really talk about ? I suppose he is talking about user
>> authentication (ie. support for +ftp priv on a vs), but our argument goes
>> for the +chrtftp priv
> 
> I think the chrtftp priv shall be implicit for every user. Specifically,
> every user shall only be allowed access to their home directory (and this is
> already a security risk). The admin/root users shall be using ssh to copy
> files or SFTP.
> 
> So a properly configured proftpd server will have the "DirectoryRoot ~"
> directive for every user, thus dropping the need for a chrtftp priviledge.

But then, the system will be ProFTPd dependent for ever and ever... we
want to system to be independent from the applications running on top of
it.

>> Btw, i just installed a new RH 7.2 system to test the skel and the
>> modified scripts and i realize that the admin user cannot give +chrtftp
>> priv only if the admin user has the +chrtftp priv.
> 
> I would call this a bug....

;-)

This time, i'll wait and see what anyone from Idaya says. Anyway, my
intention is not to wait too much :)

Regards,
_______________________________________________________
Urivan Saaib
Presidente
CiberNET Mexico
Email: [EMAIL PROTECTED]
Tel/Fax: (646) 175.71.95


------------------------- The freeVSD Support List --------------------------
Subscribe:   mailto:[EMAIL PROTECTED]?body=subscribe%20freevsd-support
Unsubscribe: mailto:[EMAIL PROTECTED]?body=unsubscribe%20freevsd-support
Archives:    http://freevsd.org/support/mail-archives/freevsd-support
-----------------------------------------------------------------------------

Reply via email to