From owner-freebsd-questions@FreeBSD.ORG Mon Feb 2 08:37:31 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id EAF8016A4CE for ; Mon, 2 Feb 2004 08:37:31 -0800 (PST) Received: from p1028-ipbffx02marunouchi.tokyo.ocn.ne.jp (p1028-ipbffx02marunouchi.tokyo.ocn.ne.jp [220.111.132.28]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3728E43D48 for ; Mon, 2 Feb 2004 08:37:26 -0800 (PST) (envelope-from lukek@meibin.net) Received: (qmail 5371 invoked by uid 89); 2 Feb 2004 16:37:25 -0000 Received: from unknown (HELO ?127.0.0.1?) (192.168.10.35) by 192.168.20.5 with SMTP; 2 Feb 2004 16:37:25 -0000 Date: Tue, 03 Feb 2004 01:33:32 +0900 From: Luke Kearney To: Michael Clark In-Reply-To: References: Message-Id: <20040203013129.7A91.LUKEK@meibin.net> MIME-Version: 1.0 Content-Type: text/plain; charset="US-ASCII" Content-Transfer-Encoding: 7bit X-Mailer: Becky! ver. 2.07.01 cc: "'freebsd-questions@freeBSD.org'" cc: Evan Sayer Subject: Re: chrooted ssh/scp X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 02 Feb 2004 16:37:32 -0000 On Mon, 2 Feb 2004 10:02:32 -0600 Michael Clark granted us these pearls of wisdom: > sshd2 will do this and if you read the license I believe it is legal to use > for most users. > > Else you can use sudo to make a ssh chroot. > google groups has some explainations of how to do this. > > > Michael Clark > Nemschoff Chairs Inc > mclark at nemschoff dot com > CompTIA A+, MCP > Voice: (920) 457 7726 x294 > Fax: (920) 453 6594 > > > > -----Original Message----- > From: Lowell Gilbert [mailto:freebsd-questions-local@be-well.ilk.org] > Sent: Monday, February 02, 2004 8:11 AM > To: Evan Sayer > Cc: freebsd-questions@freeBSD.org > Subject: Re: chrooted ssh/scp > > > Evan Sayer writes: > > > Does anyone know how to make it so that users can ssh in and get a > > normal shell or scp in and get or send files but only within their own > > home directories via chroot? > > The commercial ssh server has that capability built in, but the free > ones don't, last I checked. You should be able to hook up jail(8) or > chroot(8) to the account itself, though... excuse me if this seems off topic but a quick check over at ssh.com revealed no obvious links to a downloadable version that would not require a license. Pray tell where I might find the binaries. I would like to give sshd2 a run and see if it might fix a problem that has been nagging at me for a bit. TIA LukeK