PHWinfo banniere

Titres
PORTAIL ANNUAIRE ARTICLES COMPARATEUR HÉBERGEURS DEVIS FORUMS RÉDUCTEUR D'URL
Précédent   PHWinfo > Forums Hébergement > Forum Serveur - Sécurité et techniques > comp.security.ssh > SCP only user? (untrusted user, my mother)
S'inscrire FAQ Membres Recherche Messages du jour Marquer les forums comme lus
comp.security.ssh SSH secure remote login and tunneling tools.

SCP only user? (untrusted user, my mother)

Réponse
 
LinkBack Outils de la discussion
Vieux 16/08/2007, 17h06   #1
Ignoramus18364
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut SCP only user? (untrusted user, my mother)

I let my mom use scp to copy digital pictures to her account on my
server. Then I build a nice HTML index of pictures and thumnbnails
from cron.

Here's the problem: I am very concerned that her password would become
compromised. She uses an operating system called "Microsoft Windows
ME" and frequently gets infected by viruses.

So, I would like to severely limit her account privileges so that
hackers who steal her SSH passwords cannot crack my server. I want to
allow her to upload pictures, under her public_html, but no more (ie
no shell use, etc).

What is the "right" approach here?

thanks

i
  Réponse avec citation
Vieux 16/08/2007, 20h16   #2
Todd H.
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: SCP only user? (untrusted user, my mother)

Ignoramus18364 <ignoramus18364@NOSPAM.18364.invalid> writes:

> I let my mom use scp to copy digital pictures to her account on my
> server. Then I build a nice HTML index of pictures and thumnbnails
> from cron.
>
> Here's the problem: I am very concerned that her password would become
> compromised. She uses an operating system called "Microsoft Windows
> ME" and frequently gets infected by viruses.
>
> So, I would like to severely limit her account privileges so that
> hackers who steal her SSH passwords cannot crack my server. I want to
> allow her to upload pictures, under her public_html, but no more (ie
> no shell use, etc).
>
> What is the "right" approach here?


http://www.snailbook.com/faq/restricted-scp.auto.html



--
Todd H.
http://www.toddh.net/
  Réponse avec citation
Vieux 17/08/2007, 00h29   #3
Anonymous
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: SCP only user? (untrusted user, my mother)

Ignoramus18364 <ignoramus18364@NOSPAM.18364.invalid> wrote:

> I let my mom use scp to copy digital pictures to her account on my
> server. Then I build a nice HTML index of pictures and thumnbnails
> from cron.
>
> Here's the problem: I am very concerned that her password would become
> compromised. She uses an operating system called "Microsoft Windows
> ME" and frequently gets infected by viruses.
>
> So, I would like to severely limit her account privileges so that
> hackers who steal her SSH passwords cannot crack my server. I want to
> allow her to upload pictures, under her public_html, but no more (ie
> no shell use, etc).
>
> What is the "right" approach here?


google scp_only










  Réponse avec citation
Vieux 19/08/2007, 12h58   #4
Nico
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: SCP only user? (untrusted user, my mother)

On 17 Aug, 00:29, Anonymous <x...@hermetix.org> wrote:
> Ignoramus18364 <ignoramus18...@NOSPAM.18364.invalid> wrote:
> > I let my mom use scp to copy digital pictures to her account on my
> > server. Then I build a nice HTML index of pictures and thumnbnails
> > from cron.

>
> > Here's the problem: I am very concerned that her password would become
> > compromised. She uses an operating system called "Microsoft Windows
> > ME" and frequently gets infected by viruses.

>
> > So, I would like to severely limit her account privileges so that
> > hackers who steal her SSH passwords cannot crack my server. I want to
> > allow her to upload pictures, under her public_html, but no more (ie
> > no shell use, etc).

>
> > What is the "right" approach here?

>
> google scp_only


Google "WebDAV over HTTPS." You don't want SCP for this.

  Réponse avec citation
Vieux 19/08/2007, 12h58   #5
Nico
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: SCP only user? (untrusted user, my mother)

On 17 Aug, 00:29, Anonymous <x...@hermetix.org> wrote:
> Ignoramus18364 <ignoramus18...@NOSPAM.18364.invalid> wrote:
> > I let my mom use scp to copy digital pictures to her account on my
> > server. Then I build a nice HTML index of pictures and thumnbnails
> > from cron.

>
> > Here's the problem: I am very concerned that her password would become
> > compromised. She uses an operating system called "Microsoft Windows
> > ME" and frequently gets infected by viruses.

>
> > So, I would like to severely limit her account privileges so that
> > hackers who steal her SSH passwords cannot crack my server. I want to
> > allow her to upload pictures, under her public_html, but no more (ie
> > no shell use, etc).

>
> > What is the "right" approach here?

>
> google scp_only


Google "WebDAV over HTTPS." You don't want SCP for this.

  Réponse avec citation
Réponse


Outils de la discussion

Règles de messages
Vous ne pouvez pas créer de nouvelles discussions
Vous ne pouvez pas envoyer des réponses
Vous ne pouvez pas envoyer des pièces jointes
Vous ne pouvez pas modifier vos messages

Les balises BB sont activées : oui
Les smileys sont activés : oui
La balise [IMG] est activée : oui
Le code HTML peut être employé : non
Trackbacks are oui
Pingbacks are oui
Refbacks are oui


Fuseau horaire GMT +1. Il est actuellement 08h35.


Édité par : vBulletin® version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0 RC5 Tous droits réservés.
Version française #16 par l'association vBulletin francophone
PHWinfo est un site Éducation Sans Frontières ©2000-2008
Ad Management by RedTyger
©Tous droits réservés par les parties respectives
Page generated in 0,14140 seconds with 13 queries