Re: guest-root
Richard BOULAIS <[email protected]> Thu, 15 Sep 2005 13:36:43 +0200 (CEST)
| Newsgroups | gmane.network.ftp.wuftpd.user |
|---|---|
| Message-ID | <[email protected]> |
--0-1527266558-1126784203=:25604 Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable Thank you Michael. Yes I have, that is why I said :=20 "all users are chrooted in /home/users". =20 Let me put my problem in another way : Every thing is OK, but the initial directory, and "home" of all my users = (users group) is the same : /home/users, despite the chroot-local password file. (for the user "prologue", it should be /home/users/prologue/tmp). =20 By the way my version is wu-2.6.0(1) Tue Jan 4 19:41:20 GMT 2000 Michael Wittauer <[email protected]> a =E9crit : on the first view i mean - that you have to realize that=20 all users must be a member of=20 guestgroup users=20 group "users"=20 and you need same dir structur and files in=20 /home/users - like ./lib ./bin ./etc ./dev ./usr=20 Richard BOULAIS <[email protected]>=20 Gesendet von: [email protected]=20 14.09.2005 21:18=20 An [email protected] Kopie Thema guest-root In ref of http://www.wu-ftpd.org/HOWTO/addendum.guest.HOWTO.htm=20 I would like to have all users chroot to a common point. So I use the fol= lowing clause: guest-root /home/users=20 Then my chroot-local password file is /home/users/etc/passwd.=20 And the user's initial directory (and "home" for ~ notation) is taken fro= m the chroot-local password file :=20 -------------------------------- /home/users/etc/passwd :=20 root:*:0:0::: bin:*:1:1::: operator:*:11:0::: ftp:*:14:50::: nobody:*:99:99::: prologue:*:500:100::/prologue/tmp:=20 -------------------------------------------------------------------------= ----=20 =20 BUT it is not working : all users are chrooted in /home/users, and same = place for initial directory, and have a look on everyone's directory.=20 =20 As example above, I want the user "prologue" 's initial directory, and "h= ome" to be /home/user/prologue/tmp.=20 =20 Any idea ?=20 -------------------------------------------------------- /etc/ftpaccess := =20 class all real,guest,anonymous * limit all 10 Any /etc/msgs/msg.dead readme README* login readme README* cwd=3D*=20 message /welcome.msg login message .message cwd=3D* compress yes all tar yes all shutdown /etc/shutmsg # specify which groups will be treated as "guests". guestgroup users email root@localhost guest-root /home/users=20 =20 =09 --------------------------------- Appel audio GRATUIT partout dans le monde avec le nouveau Yahoo! Messeng= er T=E9l=E9chargez le ici ! =20 --0-1527266558-1126784203=:25604 Content-Type: text/html; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable <DIV> <DIV>Thank you Michael.</DIV> <DIV>Yes I have, that is why I said : </DIV> <DIV>"all users are chrooted in /home/users".</DIV> <DIV> </DIV> <DIV>Let me put my problem in another way :</DIV> <DIV>Every thing is OK, but the initial directory, and "home" of all my u= sers (users group) is the same :</DIV> <DIV>/home/users, despite the chroot-local password file.</DIV> <DIV>(for the user "prologue", it should be /home/users/prologue/tmp).</D= IV> <DIV> </DIV> <DIV>By the way my version is <FONT size=3D1>wu-2.6.0(1) Tue Jan 4 1= 9:41:20 GMT 2000</FONT></DIV><BR><BR><B><I>Michael Wittauer <michael.w= [email protected]></I></B> a =E9crit : <BLOCKQUOTE class=3Dreplbq style=3D"PADDING-LEFT: 5px; MARGIN-LEFT: 5px; = BORDER-LEFT: #1010ff 2px solid"><BR><FONT face=3Dsans-serif size=3D2>on t= he first view i mean - that you have to realize that</FONT> <BR><FONT fac= e=3Dsans-serif size=3D2>all users must be a member of</FONT> <BR><BR><FON= T size=3D3>guestgroup users</FONT> <BR><BR><FONT face=3Dsans-serif size=3D= 2>group "users"</FONT> <BR><BR><FONT face=3Dsans-serif size=3D2>and you n= eed same dir structur and files in</FONT> <BR><FONT face=3Dsans-serif siz= e=3D2>/home/users - like ./lib ./bin ./etc ./dev ./usr</FONT> <BR><BR><BR= ><BR><BR> <TABLE width=3D"100%"> <TBODY> <TR vAlign=3Dtop> <TD width=3D"40%"><FONT face=3Dsans-serif size=3D1><B>Richard BOULAIS <= ;[email protected]></B> </FONT><BR><FONT face=3Dsans-serif size=3D1>G= esendet von: [email protected]</FONT>=20 <P><FONT face=3Dsans-serif size=3D1>14.09.2005 21:18</FONT> </P> <TD width=3D"59%"> <TABLE width=3D"100%"> <TBODY> <TR> <TD> <DIV align=3Dright><FONT face=3Dsans-serif size=3D1>An</FONT></DIV> <TD vAlign=3Dtop><FONT face=3Dsans-serif size=3D1>wuftpd-questions@wu-ftp= d.org</FONT>=20 <TR> <TD> <DIV align=3Dright><FONT face=3Dsans-serif size=3D1>Kopie</FONT></DIV> <TD vAlign=3Dtop> <TR> <TD> <DIV align=3Dright><FONT face=3Dsans-serif size=3D1>Thema</FONT></DIV> <TD vAlign=3Dtop><FONT face=3Dsans-serif size=3D1>guest-root</FONT></TR><= /TBODY></TABLE><BR> <TABLE> <TBODY> <TR vAlign=3Dtop> <TD> <TD></TR></TBODY></TABLE><BR></TR></TBODY></TABLE><BR><BR><BR><BR><FONT s= ize=3D3>In ref of </FONT><A href=3D"http://www.wu-ftpd.org/HOWTO/addendum= .guest.HOWTO.htm"><FONT color=3Dblue size=3D3><U>http://www.wu-ftpd.org/H= OWTO/addendum.guest.HOWTO.htm</U></FONT></A> <BR><FONT size=3D3>I would l= ike to have all users chroot to a common point. So I use the following cl= ause:<BR> guest-root /home/users</FONT> <BR><FONT size=3D3>Th= en my chroot-local password file is /home/users/etc/passwd.</FONT> <BR><F= ONT size=3D3>And the user's initial directory (and "home" for ~ notation)= is taken from the chroot-local password file :</FONT> <BR><FONT size=3D3= >-------------------------------- /home/users/etc/passwd :</FONT> <BR><FO= NT size=3D3>root:*:0:0:::<BR>bin:*:1:1:::<BR>operator:*:11:0:::<BR>ftp:*:= 14:50:::<BR>nobody:*:99:99:::<BR>prologue:*:500:100::/prologue/tmp:</FONT= > <BR><FONT size=3D3>----------------------------------------------------= -------------------------</FONT> <BR><FONT size=3D3> </FONT> <BR><FONT size=3D3>BUT it is not working : all users are chrooted in /ho= me/users, and same place for initial directory, and have a look on = everyone's directory.</FONT> <BR><FONT size=3D3> </FONT> <BR><FONT s= ize=3D3>As example above, I want the user "prologue" 's initial directory= , and "home" to be /home/user/prologue/tmp.</FONT> <BR><FONT size=3D3>&nb= sp;</FONT> <BR><FONT size=3D3>Any idea ?</FONT> <BR><FONT size=3D3>------= -------------------------------------------------- /etc/ftpaccess :</FONT= > <BR><FONT size=3D3>class all real,guest,anonymous *= <BR>limit all 10 Any &nb= sp; /etc/msgs/msg.dead<BR>readme README* = login<BR>readme README* cwd=3D*</FONT> <BR><FONT size=3D= 3>message /welcome.msg login<BR>= message .message c= wd=3D*<BR>compress yes all<BR>tar  = ; yes all<BR>shutdown /e= tc/shutmsg<BR># specify which groups will be treated as "guests".<BR>gues= tgroup users<BR>email </FONT><A href=3D"mailto:root@localhost"><FONT colo= r=3Dblue size=3D3><U>root@localhost</U></FONT></A><FONT size=3D3><BR>gues= t-root /home/users</FONT> <BR><FONT size=3D3> </FONT> </BLOCKQU= OTE></DIV><p> <hr size=3D1>=20 <b><font color=3D#FF0000>Appel audio GRATUIT</font> partout dans le monde= </b> avec le nouveau Yahoo! Messenger<br>=20 <a href=3D"http://us.rd.yahoo.com/messenger/mail_taglines/default/*http:/= /fr.messenger.yahoo.com">T=E9l=E9chargez le ici !</a>=20 =20 --0-1527266558-1126784203=:25604--