> On Mon, 2004-10-11 at 11:49, James Melin wrote:
> > How do you set a user account up so that the ID cannot
> traverse 'above'
> > their assigned home directory?  Our developers want me to
> setup a dozen
> > user accounts with access to their application log dir. I
> wanna set up one,
> > and only one, and confine it to the log directory. I know
> how to set the
> > 'home' dir in the user record, I just don't know how to
> stop them from
> > getting out  of it

You may also want to look up the "restricted" shell -- it's designed for
"padded cell"  things like that. You have to specifically list any and
all files that can be accessed from the id, but it sounds like that
might be doable for this application.

----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390

Reply via email to