SSH and nologin, server for email and web space

From: Pepper Orlando (woodenbicycle@hotmail.com)
Date: Wed Dec 07 2005 - 12:44:10 EST


I am configuring Solaris 9 server mainly for email and personal and
departmental web serving. All users will have email (imap and webmail) and
personal web space, some users will have permission to mofidy departmental
web space, and only a few users will have permission to login to a shell.

First question is how to handle the "nologin" users. In the old days I would
set the shell to nologin in passwd but I have been told this doesn't work
all the time with SSH. Is this true? How is best way to configure "nologin"
users on a system that only uses SSH. I still want these users to access the
files and webspace by way of IMAP and and SCP/SFTP, but no login/shell/ssh.
Users have home directory with mail, private, and public_html
subdirectories. No telnet, no old regular ftp.

I will eventually have second server for backup and maybe load balance
sometime. For now I am using perl scripts with passwd and shadow, but maybe
I should consider some kind of user database? Maybe LDAP or MySQL? What is a
good way to do this? I could not find any useful suggestions on Sun BigAdmin
site.

Have others done similar work on modern solaris system with SSH?

_________________________________________________________________
On the road to retirement? Check out MSN Life Events for advice on how to
get there! http://lifeevents.msn.com/category.aspx?cid=Retirement
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:37:33 EDT