Opionions on user lock down...

From: Gene Siepka (gsie44@tsg.cbot.com)
Date: Tue Jun 08 2004 - 11:33:51 EDT


Hey kids... I'd like your thoughts on something...

I need to set up a user to allow an SCP only into a file transfer server,
coming from outside our company (via VPN). Basically all the user needs to
do is scp in and grab a file from their home directory. Maybe also SSH in and
just be able to do an "ls -la" to see their files.

I was thinking of using a rksh, with a .profile (owned by root) that sets
their PATH to a /usr/local/rbin that only contains the ls binary.

Is this enough? Any suggestions anyone has would be appreciated.

Thanks in advance
-Gene Siepka
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:28:49 EDT