Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 20 May 2004 22:47:10 +0200
From:      Daniel Roethlisberger <daniel@roe.ch>
To:        freebsd-security@freebsd.org
Subject:   Re: [Freebsd-security] Re: Multi-User Security
Message-ID:  <20040520204710.GB12301@dragon.roe.ch>
In-Reply-To: <20040520033024.GA26640@therub.org>
References:  <20040518160517.GA10067@therub.org> <OPEPILILPLAKPFCNKOKAGEGHCBAA.remko@elvandar.org> <20040520033024.GA26640@therub.org>

next in thread | previous in thread | raw e-mail | index | archive | help

--EeQfGwPcQSOJBaQU
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Dan Rue <drue@therub.org> [2004-05-19/22:30]:
> You obviously havn't tried to chroot scponly users.. _that's_ the
> tricky part.  Especially if you want it to scale up beyond a handful
> of users.  If i'm wrong - fill me in i'd love to hear how to do it.

I second that. I've been chrooting sftp-only users for a while now, with
an approach similar to that of scponly, but I cannot say that my
solution is scaling particularly well... :-/

Cheers,
Dan


--=20
Daniel Roethlisberger <daniel@roe.ch>
GnuPG key ID 0x804A06B1 (DSA/ElGamal)

--EeQfGwPcQSOJBaQU
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (FreeBSD)

iD8DBQFArRlNOXQOmIBKBrERAjMrAJ9b0RLPxQsCRnjfITMZ0s5xBS3ebgCgimlj
cyeGx+HE5MXPMSuylHmyhQg=
=8KPv
-----END PGP SIGNATURE-----

--EeQfGwPcQSOJBaQU--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040520204710.GB12301>