Skip to main content

Thread: Weird situation with SSH and SCP service


i stuck in weird situation , use gurus in security area.

have categorized users 3:
1. root user
2. other local users
3. ldap users

want setup following 2 usecases:
a)
1. allow keybased ssh , scp root users
2. allow ssh disallow scp service other local users
3. disallow ssh , scp ldap users

b)
1. allow keybased ssh , scp root users
2. disallow both ssh , scp other local users
3. disallow ssh allow scp ldap users

1. in both cases, think permitrootlogin in sshd_config help

3. thinking of deploying rssh control scp service access, since ssh restricted anyways.

problem area 2. primarily.
i) how allow ssh disallow scp 'other local users'
ii) how disallow both ssh , scp 'other local users'

or pointers appreciated

as far understand , , wrong can not allow shell , simultaneously deny scp (short of rm'ing scp command)

interesting question pose, i'm not sure it's possible micromanage far.

real suggestion can offer set user's permissions if scp can cp files controlled area :-/


Forum The Ubuntu Forum Community Ubuntu Specialised Support Security [SOLVED] Weird situation with SSH and SCP service


Ubuntu

Comments

Popular posts from this blog

How to change text Component easybook reloaded *newbee* - Joomla! Forum - community, help and support

After Effect warning: A problem occurred when processing OpenGL commands

Preconditions Failed. - Joomla! Forum - community, help and support