[Bug 2036] New: Add %g user group name parameter for ChrootDirectory

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Sun Aug 19 05:28:09 EST 2012


https://bugzilla.mindrot.org/show_bug.cgi?id=2036

          Priority: P5
            Bug ID: 2036
          Assignee: unassigned-bugs at mindrot.org
           Summary: Add %g user group name parameter for ChrootDirectory
          Severity: enhancement
    Classification: Unclassified
                OS: Linux
          Reporter: sue at pennine.com
          Hardware: ix86
            Status: NEW
           Version: 6.0p1
         Component: Miscellaneous
           Product: Portable OpenSSH

Created attachment 2182
  --> https://bugzilla.mindrot.org/attachment.cgi?id=2182&action=edit
Patch which implements the functionality described above.

When chrooting users it can be useful to be able to use a user's group
name as a parameter when constructing the chroot directory path for a
user. The code already supports parameter expansion for the user name
(%u) and home directory (%h).

So, this can be implemented by a fairly simple extension of the
existing code. I have attached a patch which adds the parameter %g
which expands to the user's group name if used in a ChrootDirectory
configuration line in sshd_config. E.g.  ChrootDirectory 
/opt/domains/%g  If user foo with group bar connects via ssh then they
will be chroot'd to /opt/domains/bar

TODO: update the man page

-- 
You are receiving this mail because:
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list