From owner-freebsd-questions@FreeBSD.ORG Sat Jun 11 10:46:38 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7966116A41C for ; Sat, 11 Jun 2005 10:46:38 +0000 (GMT) (envelope-from gabor.kovesdan@t-hosting.hu) Received: from viefep20-int.chello.at (viefep12-int.chello.at [213.46.255.25]) by mx1.FreeBSD.org (Postfix) with ESMTP id 8428F43D49 for ; Sat, 11 Jun 2005 10:46:36 +0000 (GMT) (envelope-from gabor.kovesdan@t-hosting.hu) Received: from [80.98.207.149] by viefep20-int.chello.at (InterMail vM.6.01.04.04 201-2131-118-104-20050224) with ESMTP id <20050611104634.NQAW29474.viefep20-int.chello.at@[80.98.207.149]>; Sat, 11 Jun 2005 12:46:34 +0200 Message-ID: <42AAC108.7060000@t-hosting.hu> Date: Sat, 11 Jun 2005 12:46:32 +0200 From: =?ISO-8859-1?Q?K=F6vesd=E1n_G=E1bor?= User-Agent: Mozilla Thunderbird 1.0 (Windows/20041206) X-Accept-Language: en-us, en MIME-Version: 1.0 To: scuba@centroin.com.br References: In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 8bit Cc: freebsd-questions@freebsd.org Subject: Re: login.conf limits X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 11 Jun 2005 10:46:38 -0000 Hello, I've done a new class "shuser" with some limits, rebuild the cap database and made a new user "tester" with adduser. When it asked for the login class, I specified shuser, and tried to login with ssh, but it failed. My shuser class: shuser:\ :passwd_format=md5:\ #:passwordtime=90d:\ #:idletime=30m:\ #:login-retries=3:\ #:sessionlimit=1:\ :copyright=/etc/COPYRIGHT:\ :welcome=/etc/motd:\ :setenv=MAIL=/var/mail/$,BLOCKSIZE=K,FTP_PASSIVE_MODE=YES:\ :path=/sbin /bin /usr/sbin /usr/bin /usr/games /usr/local/sbin /usr/local/bin /usr/X11R6/bin ~/bin:\ #:lang=hu_HU.ISO8859-2:\ #:charset=iso-8859-2:\ #:ftp-chroot=true:\ :nologin=/var/run/nologin:\ :cputime=unlimited:\ :datasize=unlimited:\ :stacksize=unlimited:\ #:memorylocked=15m:\ #:memoryuse=10m:\ :filesize=unlimited:\ #:coredumpsize=5m:\ #:openfiles=3:\ #:maxproc=3:\ #:sbsize=512k:\ #:vmemoryuse=5m:\ :priority=0:\ :ignoretime@:\ :umask=027: After the first try I inserted those hashmarks before the modified lines, but it still doesn't work. Did I make something wrong? Cheers, Gábor Kövesdán scuba@centroin.com.br wrote: >Hi, > > After doing the modfications on login.conf, run: > > # cap_mkdb /etc/login.conf > > Define the class for each user in passwd, using vipw. The class is >the 5th field, in this example the class was defined as "limiteduser": > >zoruega:$1$50258.20$DdcXReDR/lhZI/1CjjEEd0:102:201:limiteduser:0:0:Zoruega Linfo,,,,X:/nonexistent:/bin/sh > >