Re: ProFTPd und MySQL

2006-10-10 Diskussionsfäden Reinhold Plew


Tobias Großmann wrote:

Hallo Leute,

ich habe mittlerweile versucht, ProFTPd mit MySQL zu nutzen. Ich habe
die Debianpackete mysql-client, mysql-server und proftpd-mysql 

Es gibt die Datenbank ftpdb mit den Tabellen ftpuser und ftpgroups.

Hier der Aufbau:
| groupname | gid  | members |
| ftpgroup  | 5500 | ftpuser |



Ich habe ProFTPd gestartet, aber leider klappt der Login mit dem eingetragenen 
User nicht. Das einloggen mit den lokalen Unix-Usern funktioniert. Eigentlich 
sollte es aber genau andersrum sein.

Fehlermeldung beim Login?
Was steht in der auth.log dazu?


Hier meine conf:
# /etc/proftpd.conf -- This is a basic ProFTPD configuration file.
# To really apply changes reload proftpd after modifications.

ServerName  "Tobi's kleiner DISS"
ServerType  inetd

DefaultServer   on

TimeoutNoTransfer   600
TimeoutStalled  600
TimeoutIdle 1200

DisplayFirstChdir   .message
ListOptions "-l"

DenyFilter  \*.*/

# Uncomment this if you are using NIS or LDAP to retrieve passwords:
#PersistentPasswd   off

# Uncomment this if you would use TLS module:
#TLSEngine  on

# Uncomment this if you would use quota module:
#Quotas on

# Uncomment this if you would use ratio module:
#Ratios on

# Port 21 is the standard FTP port.

# To prevent DoS attacks, set the maximum number of child processes
# to 30.  If you need to allow more than 30 concurrent connections
# at once, simply increase this value.  Note that this ONLY works
# in standalone mode, in inetd mode you should use an inetd server
# that allows you to limit maximum number of processes per service
# (such as xinetd)

# Set the user and group that the server normally runs at.
Group   nogroup

# Umask 022 is a good standard umask to prevent new files and dirs
# (second parm) from being group and world writable.
Umask   022  022
# Normally, we want files to be overwriteable.
AllowOverwrite  on

# Delay engine reduces impact of the so-called Timing Attack described in
# It is on by default. 
#DelayEngine 			off

# A basic anonymous configuration, no upload directories.

#   Userftp
#   Group   nogroup
#   # We want clients to be able to login with "anonymous" as well as "ftp"
#   UserAlias   anonymous ftp
#   # Cosmetic changes, all files belongs to ftp user
#   DirFakeUser on ftp
#   DirFakeGroup on ftp
#   RequireValidShell		off
#   # Limit the maximum number of anonymous logins

#   MaxClients  10
#   # We want 'welcome.msg' displayed at login, and '.message' displayed

#   # in each newly chdired directory.
#   DisplayLoginwelcome.msg
#   DisplayFirstChdir   .message
#   # Limit WRITE everywhere in the anonymous chroot

#   DenyAll
#   # Uncomment this if you're brave.

#   # 
#   #   # Umask 022 is a good standard umask to prevent new files and dirs
#   #   # (second parm) from being group and world writable.
#   #   Umask   022  022
#   #
#   #DenyAll
#   #
#   #
#   #AllowAll
#   #
#   # 

DefaultRoot ~
SQLAuthTypes Plaintext Crypt
SQLAuthenticate users* groups*
SQLConnectInfo [EMAIL PROTECTED] proftpd password
SQLUserInfo ftpuser userid passwd uid gid homedir shell
SQLGroupInfo ftpgroup groupname gid members
SQLMinID 500
SQLHomedirOnDemand on
SQLLog PASS updatecount
SQLNamedQuery updatecount UPDATE "count=count+1, accessed=now() WHERE 
userid='%u'" ftpuser
SQLLog STOR,DELE modified
SQLNamedQuery modified UPDATE "modified=now() WHERE userid='%u'" ftpuser
DeferWelcome on
RootLogin off
RequireValidShell off 

Kann jemand den oder die Fehler finden?
Kann das mit dem in der SQL-DB hinterlegten UserID liegen? Da steht momentan 
5001. Ich kenne meine UserID aber leider nicht?

Haeufig gestellte Fragen und Antworten (FAQ):

Zum AUSTRAGEN schicken Sie eine Mail an [EMAIL PROTECTED]
mit dem Subject "unsubscribe". Probleme? Mail an [EMAIL PROTECTED] (engl)

Re: ProFTPd und MySQL

2006-10-10 Diskussionsfäden Peter Velan
am 2006-10-10 10:54 schrieb Tobias Großmann:
> Hier meine conf:


du hast keine einzige Logfile definiert - nimm in deine conf noch
folgende Zeilen auf:


TransferLog /var/log/proftpd/xferlog
SystemLog /var/log/proftpd/proftpd.log

LogFormat auth "[%{%F %T %z}t] %a %h %u \"%r\" %s"
LogFormat dflt "[%{%F %T %z}t] %a %h %u \"%r\" %s %b"
LogFormat rdwr "[%{%F %T %z}t] %a %h %u \"%r\" %s %b %T"

ExtendedLog /var/log/proftpd/auth.log AUTHauth
ExtendedLog /var/log/proftpd/paranoid.log ALL dflt
ExtendedLog /var/log/proftpd/access.log WRITE,READ  rdwr

SQLLogFile /var/log/proftpd/sql.log


Vor allem SQLLogFile sagt dir dann was so bei SQL abgeht. Im Betrieb
aber lieber abschalten - der SQL-Log ist heftig.


Haeufig gestellte Fragen und Antworten (FAQ):

Zum AUSTRAGEN schicken Sie eine Mail an [EMAIL PROTECTED]
mit dem Subject "unsubscribe". Probleme? Mail an [EMAIL PROTECTED] (engl)

ProFTPd und MySQL

2006-10-10 Diskussionsfäden Tobias Großmann
Hallo Leute,

ich habe mittlerweile versucht, ProFTPd mit MySQL zu nutzen. Ich habe
die Debianpackete mysql-client, mysql-server und proftpd-mysql 

Es gibt die Datenbank ftpdb mit den Tabellen ftpuser und ftpgroups.

Hier der Aufbau:
| groupname | gid  | members |
| ftpgroup  | 5500 | ftpuser |



Ich habe ProFTPd gestartet, aber leider klappt der Login mit dem eingetragenen 
User nicht. Das einloggen mit den lokalen Unix-Usern funktioniert. Eigentlich 
sollte es aber genau andersrum sein.

Hier meine conf:
# /etc/proftpd.conf -- This is a basic ProFTPD configuration file.
# To really apply changes reload proftpd after modifications.

ServerName  "Tobi's kleiner DISS"
ServerType  inetd

DefaultServer   on

TimeoutNoTransfer   600
TimeoutStalled  600
TimeoutIdle 1200

DisplayFirstChdir   .message
ListOptions "-l"

DenyFilter  \*.*/

# Uncomment this if you are using NIS or LDAP to retrieve passwords:
#PersistentPasswd   off

# Uncomment this if you would use TLS module:
#TLSEngine  on

# Uncomment this if you would use quota module:
#Quotas on

# Uncomment this if you would use ratio module:
#Ratios on

# Port 21 is the standard FTP port.

# To prevent DoS attacks, set the maximum number of child processes
# to 30.  If you need to allow more than 30 concurrent connections
# at once, simply increase this value.  Note that this ONLY works
# in standalone mode, in inetd mode you should use an inetd server
# that allows you to limit maximum number of processes per service
# (such as xinetd)

# Set the user and group that the server normally runs at.
Group   nogroup

# Umask 022 is a good standard umask to prevent new files and dirs
# (second parm) from being group and world writable.
Umask   022  022
# Normally, we want files to be overwriteable.
AllowOverwrite  on

# Delay engine reduces impact of the so-called Timing Attack described in
# It is on by default. 

# A basic anonymous configuration, no upload directories.

#   Userftp
#   Group   nogroup
#   # We want clients to be able to login with "anonymous" as well as "ftp"
#   UserAlias   anonymous ftp
#   # Cosmetic changes, all files belongs to ftp user
#   DirFakeUser on ftp
#   DirFakeGroup on ftp
#   RequireValidShell   off
#   # Limit the maximum number of anonymous logins
#   MaxClients  10
#   # We want 'welcome.msg' displayed at login, and '.message' displayed
#   # in each newly chdired directory.
#   DisplayLoginwelcome.msg
#   DisplayFirstChdir   .message
#   # Limit WRITE everywhere in the anonymous chroot
#   DenyAll
#   # Uncomment this if you're brave.
#   # 
#   #   # Umask 022 is a good standard umask to prevent new files and dirs
#   #   # (second parm) from being group and world writable.
#   #   Umask   022  022
#   #
#   #DenyAll
#   #
#   #
#   #AllowAll
#   #
#   # 
DefaultRoot ~
SQLAuthTypes Plaintext Crypt
SQLAuthenticate users* groups*
SQLConnectInfo [EMAIL PROTECTED] proftpd password
SQLUserInfo ftpuser userid passwd uid gid homedir shell
SQLGroupInfo ftpgroup groupname gid members
SQLMinID 500
SQLHomedirOnDemand on
SQLLog PASS updatecount
SQLNamedQuery updatecount UPDATE "count=count+1, accessed=now() WHERE 
userid='%u'" ftpuser
SQLLog STOR,DELE modified
SQLNamedQuery modified UPDATE "modified=now() WHERE userid='%u'" ftpuser
DeferWelcome on
RootLogin off
RequireValidShell off 

Kann jemand den oder die Fehler finden?
Kann das mit dem in der SQL-DB hinterlegten UserID liegen? Da steht momentan 
5001. Ich kenne meine UserID aber leider nicht?

Danke schon mal im voraus

Haeufig gestellte Fragen und Antworten (FAQ):

Zum AUSTRAGEN schicken Sie eine Mail an [EMAIL PROTECTED]
mit dem Subject "unsubscribe". Probleme? Mail an [EMAIL PROTECTED] (engl)