On 12/7/06, Gareth 'bigbro' Eason <bigbro at skynet.ie> wrote:
> Can you contact me (on or off list) regarding how you do this and what
> limited shell technique or software you use, please?
>> I'm interested in doing a similar thing - creating a user account that
> only allows upload of files, but encrypted in transit (so SCP / rsync
> over ssh / SFTP / etc.) - without compromising security of the server
> as a whole.
>> In fact, if anyone has thoughts or suggestions on this, I'd be
> interested in hearing about them. Currently I'm leaning towards a chroot
> per user account, but if there's a better way I'm all ears. (And setting
> up a chroot that supports rsync is a PITA.)
>
I'm currently using SFTP+rssh with a chroot for this sort of thing and
it works well.
To the original poster, a possible solution to your desire to limit
file upload sizes is an iptables rule using the connbytes module.
Cian
Maintained by the ILUG website team. The aim of Linux.ie is to
support and help commercial and private users of Linux in Ireland. You can
display ILUG news in your own webpages, read backend
information to find out how. Networking services kindly provided by HEAnet, server kindly donated by
Dell. Linux is a trademark of Linus Torvalds,
used with permission. No penguins were harmed in the production or maintenance
of this highly praised website. Looking for the
Indian Linux Users' Group? Try here. If you've read all this and aren't a lawyer: you should be!