From owner-freebsd-questions@freebsd.org Wed Dec 9 01:07:46 2015 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 6C10C9D5B11 for ; Wed, 9 Dec 2015 01:07:46 +0000 (UTC) (envelope-from patrickhess@gmx.net) Received: from mout.gmx.net (mout.gmx.net [212.227.17.21]) (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mout.gmx.net", Issuer "TeleSec ServerPass DE-1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id C885417E2 for ; Wed, 9 Dec 2015 01:07:45 +0000 (UTC) (envelope-from patrickhess@gmx.net) Received: from desk8.phess.net ([95.88.166.205]) by mail.gmx.com (mrgmx102) with ESMTPSA (Nemesis) id 0Lkzph-1aeQXK3GQH-00ajbs for ; Wed, 09 Dec 2015 02:07:43 +0100 From: Patrick Hess To: freebsd-questions@freebsd.org Subject: Re: Synchronizing directory hierarchies via SFTP Date: Wed, 09 Dec 2015 02:07:42 +0100 Message-ID: <8139725.Ur2OEuu1Yn@desk8.phess.net> User-Agent: KMail/4.14.3 (FreeBSD/10.1-RELEASE-p24; KDE/4.14.3; i386; ; ) In-Reply-To: <44daceeebc9b2997663a88e485b83df9@dweimer.net> References: <13761006.QDN0LtKzYl@desk8.phess.net> <24246596.8z5VK3yfqz@desk8.phess.net> <44daceeebc9b2997663a88e485b83df9@dweimer.net> MIME-Version: 1.0 Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="us-ascii" X-Provags-ID: V03:K0:71/jNSPuUnI5B+YM5DNXslsRQAZ/JUpZK0YP/dEById+HO63qM1 7/mrVRpnwJgmboCVM+e0RKFbKRQonTyjYPwAZmlL0z/N+g8EjQk4nUfo0zGugM12VrrR9cJ znmZ7EmJ/fK0U3Ah85DZkl7nZlErKK44kPDZvasw4MBCSS4daoAxgREE+jI4H4xV347pJn/ r11i7jEzW6FPouju9VC7g== X-UI-Out-Filterresults: notjunk:1;V01:K0:1aTAodBAvFA=:uiq+0pnbD0hof7BulttvN5 51FV7n208mUBYjA9w12MKSLKw1vimXHZxG9w/ovyXDmS9JMAGhCZU5IGoRpohp0Aiks/ECd04 r5KT4lqzEK8gg3ECgNJX9f323pBVjGvnel3kaTWo9oeFGsQZ/hoZ8jwnVcyh+Dy5rNTbvaqmR 2VZ8aWZfLWXsFfj9c8rPHrOii/BT4n7TQ/PasDzjHgm+PKO/d4WevvBwT1EgU4fnMynkFw4ym G9eTifW4RWmmqjcfExumBV8OPKbb4KJXyLByDQ7kSwiT8Kw5jEs467wE91ZAOKDr1lieq9z7Y 0EjXSKxPi3IODFJSRinHiXpjWK91BO/ZjTjwxUG1VUd/ZCxvty/fDSGs/Nq/dJ+lgLdHHSeE4 9wxuoJWVwltoaNbxTyKKz+4QPDdflef1YpIpHkJAEVO48D0VqJDCyU8LOAFUwFYaU12xi6DPt wS16Q68dFtn/p76tq+alXWKCaEXTR8zj5ou38Fljdi+lC/L+Tm0Y0Ed+EAjlDYlEGvcqtpvv8 uT0qdsoSKr6MMxoQwUXagzZlLKeOd9dqZfRUGWmsHeyFlZ9RSf3Ri8aLN/9QowL1OR4a87tQA IpGG8fn43m/RYiMxo+NBTzo2EwkAmYeckXBXy6cMI1c1AjeyQVHZpHkL7M5Kcir8EzAVPOe1u IalENwbNHhfyctYc/V3tVMpDM8SSpOVazOhzFkVqL+CFfvr5NRNAZRrm5DIn1Aky5XpbdqvuW iU5LA+/UP5IX361vMG/MQPt2+HzuAnqIm8YxTh60ufoOcAQ7URI9/8Biw6PambX4hsrRPJLIv uHezgUn X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 09 Dec 2015 01:07:46 -0000 dweimer wrote: > I am not familiar with lftp, so it may not have support for it, but if > it were me doing this, I would look into using public/private OpenSSH > key pairs instead of sending the password with the expect script. I'd prefer to take that route, too. Well, actually, I'd rather use cpdup over SSH with public keys in the first place. Unfortunately, with this server, I really can't do *anything* on the remote side, and password authentication is the only option I've been given. But good thing you mentioned that. The Expect script will of course leak the password out to the process table. That's not an issue in my case; if it was, I'd definitely set security.bsd.see_other_uids=0. Patrick