Boston Linux & UNIX was originally founded in 1994 as part of The Boston Computer Society. We meet on the third Wednesday of each month, online, via Jitsi Meet.

BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Discuss] Using sftp without a shell account



On 1/2/2015 2:34 PM, Bill Horne wrote:
> 1. Does every Open Directory user have to have a "home" directory on the
> master server "/Users" branch, or can it be placed elsewhere or left on
> the user's workstation?

It's possible but it's a bit of a pain. I looked into it a while ago for 
using AFS home directories. In practice, I just use directory skeletons 
and symbolic links to make things look right. Much simpler to manage 
than mucking around with all users' directory information.

> 2. How would you chroot network users with local "home" directories so
> that they're blocked from using them, and limited to the same branch as
> ftp users?

I'd use rssh (OpenSSH restricted shell) and follow rssh's recommended 
practices.

> 3.

Don't know off hand. I don't have an OS X box handy to look.

-- 
Rich P.



BLU is a member of BostonUserGroups
BLU is a member of BostonUserGroups
We also thank MIT for the use of their facilities.

Valid HTML 4.01! Valid CSS!



Boston Linux & Unix / webmaster@blu.org