Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Wanet Telecoms Ltd on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

redhat 9.0 and FTP user rights 1

Status
Not open for further replies.
Jun 11, 2003
88
US
ok i finally got the ftp working it seems, although i cant access it from this computer, i can from others so im not too worried about it.

my new problems are
1) adding more FTP users with their own folders (used default folders for the first trial one)
2) that when i access the needed file thru windows explorer i can only see that file. however if i use a program called ws_ftp Pro i can get into any file on the system. i need to know how to restrict that.

i want have 3 ftp users to only be able to access their folder with 2 people able to access any ftp folder on the server.


thanks in advance

david
 
What ftp server are you using? To keep users from having access to the entire drive you would chroot (jail) them to a specific directory. Usually this would be their own home directory. If the users are webmasters of their own websites, then you would make their webspace their home directory. For example, if you have a user named joe and he has a website called bigjoes.com then his home dir could be /websites/bigjoes/. Then when he logs in via ftp with his user name and password, he'd be put in /websites/bigjoes and would only have access to that directory and all its sub-directories. If you allow anonymous access, I believe the default directory is /var/ftp/pub. If you don't have a specific reason for allowing anonymous users, I'd disallow them for security reasons. You would do most of this through your server's configuration file which in most cases is in the /etc directory but the specific method depends on your ftp server.
 
Sorry, just noticed your other post. I see you use vsftpd. You will find a sample config file in /etc/vsftpd/vsftpd.conf. It should be commented enough to help you figure out what needs to be edited. Save the edited version as /etc/vsftpd.conf and you should be all set.
 
another related issue (havent tried the above solutions yet, working on other matters :)
when i ftp the server from explorer, netscape etc i can only access the folder that i have rights to (which is correct)
however when i use a program called ws_ftp Pro i can access the entire server. this obviously is insecure and not what i want. any help in this matter?

thanks
david
 
When you setup vsftpd.conf to chroot the users, this problem should go away.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top