chroot sftp-server [PATCH]

Damien Miller djm at mindrot.org
Fri May 25 16:21:33 EST 2001


On Fri, 25 May 2001, Andrew Bartlett wrote:

> Is there any way of making this work?  This is the method I much prefer,
> and was looking at implementing a while ago.  I'm glad sombodies taken a
> stab at it.
>
> I run SFTP specificly becouse it does not require a ROOT deamon (apart
> from OpenSSH, which I run already) nor does it require a set-uid
> binary.  Hence my interest in this patch.

I am not to fussed about a setuid sftp-server, so long as it does
does chdir,chroot,setuid as its first actions. IMO this is preferable
to patch-checking schemes which introduce complexity and may be
possible to fool.

-d

-- 
| Damien Miller <djm at mindrot.org> \ ``E-mail attachments are the poor man's
| http://www.mindrot.org          /   distributed filesystem'' - Dan Geer




More information about the openssh-unix-dev mailing list