Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 25 Sep 1995 08:11:01 +0100 (MET)
From:      J Wunsch <j@uriah.heep.sax.de>
To:        gcrutcher@datatrek.com (Gary Crutcher)
Cc:        hackers@freebsd.org
Subject:   Re: FreeBSD Questions
Message-ID:  <199509250711.IAA06270@uriah.heep.sax.de>
In-Reply-To: <24091995171734970.II18467@datatrek.com> from "Gary Crutcher" at Sep 24, 95 05:08:09 pm

next in thread | previous in thread | raw e-mail | index | archive | help
As Gary Crutcher wrote:
> 
> 1) How or where do I get a 'restricted' shell program for customers
> telneting into my site?

There's no such thing like a `restricted' shell available.  All the
so-called `restricted' shells on other systems give admins a false
confidence; they usually could be bypassed by a hacker in (depending
on the line speed) less than 5 minutes.  I'm not sure if you'd like
it still...

The only safe environment for such a case is setting up a chroot
environment.  It's a bit more work, but you can have a better feeling
after you're done. :-)

-- 
cheers, J"org

joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/
Never trust an operating system you don't have sources for. ;-)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199509250711.IAA06270>