Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Mar 2008 18:26:51 -0400
From:      "Philip M. Gollucci" <pgollucci@riderway.com>
To:        Jerry McAllister <jerrymc@msu.edu>
Cc:        "Philip M. Gollucci" <philip@ridecharge.com>, FreeBSD Questions <freebsd-questions@freebsd.org>
Subject:   Re: security/openssh-portable
Message-ID:  <47D7072B.6090501@riderway.com>
In-Reply-To: <20080311221610.GB2418@gizmo.acns.msu.edu>
References:  <47D702EC.2090908@riderway.com> <20080311221610.GB2418@gizmo.acns.msu.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
>> user:*:3000:3000::0:0:F L:/foo/./user:/bin/sh
> The usual thing is make the shell   /bin/nologin
Hi Jerry, Thanks -- but
Changed to /usr/sbin/nologin

So thats not in the 'chroot' aka /foo/user/usr/sbin/nologin

$ sftp -v -v -v user@devX.domain.tld
OpenSSH_4.5p1 FreeBSD-20061110, OpenSSL 0.9.8e 23 Feb 2007
debug1: Remote protocol version 1.99, remote software version 
OpenSSH_4.7p1-hpn12v20 FreeBSD-openssh-portable-overwrite-base-4.7.p1_1,1
debug1: match: OpenSSH_4.7p1-hpn12v20 
FreeBSD-openssh-portable-overwrite-base-4.7.p1_1,1 pat OpenSSH*

debug2: channel 0: open confirm rwindow 0 rmax 32768
Request for subsystem 'sftp' failed on channel 0


-- 
------------------------------------------------------------------------
Philip M. Gollucci (philip@ridecharge.com)
o:703.549.2050x206
Senior System Admin - Riderway, Inc.
http://riderway.com / http://ridecharge.com
1024D/EC88A0BF 0DE5 C55C 6BF3 B235 2DAB  B89E 1324 9B4F EC88 A0BF

Work like you don't need the money,
love like you'll never get hurt,
and dance like nobody's watching.




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?47D7072B.6090501>