jailkit-users
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Jailkit-users] Sftp users are not able to chroot with Jailkit setup


From: Seshan, Vinod K. (CONT)
Subject: [Jailkit-users] Sftp users are not able to chroot with Jailkit setup
Date: Fri, 24 Jun 2011 14:34:48 +0100

Hi Team,
 
We have installed/configured jailkit version jailkit-2.11-1.el5.rf on our RHEL5 server. We have SSH Tectia Client 6.1.7 build 139 installed in this server. When a chrooted user configured with jailkit login to server using ssh , the user is logged into the correct jail and the jailed user cannot go to other directories out of jail. But if the chrooted user sftp to the server, the user is not chrooted and the user can cd to any other directory in the server. Could you please let us know what all modifications we need to make to enable sftp support for jailkit.
 
Chroot system call can only be made as root and the sftp-server is run as a subsystem request by a user inside the ssh session. Is it because this the sftp login is not able to enter to jail and using ssh we are able to enter into jil. If this is the case, then what is the solution for chroot users who sftp to the server.
 
Thanks & Regards,
 
Vinod Kumar Seshan
UK IT Service Delivery Team - UNIX_COEP
Team On-call Numbers : +91 97422 32086, +91 97422 32085







The information contained in this e-mail is confidential and/or proprietary 

to Capital One and/or its affiliates. The information transmitted herewith
is intended only for use by the individual or entity to which it is
addressed. If the reader of this message is not the intended recipient,
you are hereby notified that any review, retransmission, dissemination,
distribution, copying or other use of, or taking of any action in reliance
upon this information is strictly prohibited. If you have received this
communication in error, please contact the sender and delete the material
from your computer.

Attachment: Jailkit-issue.txt
Description: Jailkit-issue.txt


reply via email to

[Prev in Thread] Current Thread [Next in Thread]