The FreeBSD Diary

The FreeBSD Diary (TM)

Providing practical examples since 1998

If you buy from Amazon USA, please support us by using this link.
Article Feedback - VLAN with pipsecd
 New Topic  |  Go to Top  |  Go to Topic  |  Search  |  Log In   Newer Topic  |  Older Topic 
 owner of /incoming
Author: Toomas Aas 
Date:   23-09-02 17:45


First, thanks for the article. It was indeed very helpful and I got my anonymous ftp server up without any problems.

I made only one change to the settings suggested in the article. I want a few remote users to be able to download files from /incoming. Because of possible security problems I decided that I don't want them to do it with ftp but use scp instead.

So, instead of chowning /incoming to nobody.wheel I created a 'ftpadm' group and chowned /incoming to nobody.ftpadm. Then I just put the users that I want to let to download the files into ftpadm group.

I'm running the server in 'anonymous-only' mode so these users cannot access the ftp server with their usernames/passwords but *must* use scp.

I wonder if I have opened any security holes by deviating from the article in this way?

Reply To This Message
 Forum List  |  Threaded View   Newer Topic  |  Older Topic 

 Forum List  |  Need a Login? Register Here 
 User Login
 User Name:
 Remember my login:
 Forgot Your Password?
Enter your email address or user name below and a new password will be sent to the email address associated with your profile.
How to get the most out of the forum