again chroot

Markus Friedl markus at openbsd.org
Fri Nov 16 06:09:07 EST 2001


make sftp-server setuid root and let it do the chroot itself,
depending on a config file, like /etc/sftp-chrootusers

but you have to be careful. chroot $HOME is
probably not really save if .ssh is writeable to
the user. and so on.

-m



More information about the openssh-unix-dev mailing list