From owner-freebsd-questions@FreeBSD.ORG Fri Sep 8 03:45:54 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 71E8A16A4DD for ; Fri, 8 Sep 2006 03:45:54 +0000 (UTC) (envelope-from chad@shire.net) Received: from hobbiton.shire.net (mail.shire.net [166.70.252.250]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2ED9643D45 for ; Fri, 8 Sep 2006 03:45:54 +0000 (GMT) (envelope-from chad@shire.net) Received: from [67.171.127.191] (helo=[192.168.99.68]) by hobbiton.shire.net with esmtpa (Exim 4.51) id 1GLXJR-000Lbp-Na; Thu, 07 Sep 2006 21:45:53 -0600 In-Reply-To: <226ae0c60609070635n7e901beewa21f0757d2ab99ec@mail.gmail.com> References: <226ae0c60609070635n7e901beewa21f0757d2ab99ec@mail.gmail.com> Mime-Version: 1.0 (Apple Message framework v752.2) Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed Message-Id: Content-Transfer-Encoding: 7bit From: "Chad Leigh -- Shire.Net LLC" Date: Thu, 7 Sep 2006 21:45:51 -0600 To: David Robillard X-Mailer: Apple Mail (2.752.2) X-SA-Exim-Connect-IP: 67.171.127.191 X-SA-Exim-Mail-From: chad@shire.net X-SA-Exim-Scanned: No (on hobbiton.shire.net); SAEximRunCond expanded to false Cc: FreeBSD Questions Mailing List Subject: Re: need a restricted shell X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 08 Sep 2006 03:45:54 -0000 On Sep 7, 2006, at 7:35 AM, David Robillard wrote: >> I am looking for a shell that will allow Subversion to be run over >> ssh but not allow interactive login or if it allows interactive >> login, will only allow Subversion commands to be run... Any ideas >> on how to accomplish this? > > Hi Chad, > > You could install the shells/scponly port and build it with it's > chroot option. > (i.e. sudo make -DWITH_SCPONLY_CHROOT install) Don't run the `make > clean` just yet, because you will need the "setup_chroot.sh" script > which is inside the work/scponly- directory. Thanks to David and all who responded. I will give this a shot. Thanks Chad --- Chad Leigh -- Shire.Net LLC Your Web App and Email hosting provider chad at shire.net