跳到主要內容

sftp 的 chroot 設定

[code]groupadd --system sftponly[/code]joe /etc/ssh/sshd_config[pre]Subsystem sftp internal-sftpMatch group sftponly ChrootDirectory /home/%u X11Forwarding no AllowTcpForwarding no ForceCommand internal-sftp[/pre]useradd user1usermod -aG sftponly user1usermod -d / user1chown root:root /home/user1chmod 755 /home/user1mkdir /home/user1/fileschown user1:user1 /home/user1/filesrm -f /home/user1/.bash* .profilepasswd user1

sftp 的 chroot 設定
[code]
groupadd --system sftponly
[/code]

joe /etc/ssh/sshd_config
[pre]
Subsystem sftp internal-sftp
Match group sftponly
ChrootDirectory /home/%u
X11Forwarding no
AllowTcpForwarding no
ForceCommand internal-sftp
[/pre]

useradd user1
usermod -aG sftponly user1
usermod -d / user1
chown root:root /home/user1
chmod 755 /home/user1
mkdir /home/user1/files
chown user1:user1 /home/user1/files
rm -f /home/user1/.bash* .profile

passwd user1