limiting users to their home directory

Florian Diesch diesch at spamfence.net
Wed Dec 24 12:03:24 UTC 2008


Smoot Carl-Mitchell <smoot at tic.com> wrote:

> On Tue, 2008-12-23 at 09:21 +0000, Kenneth P. Turvey wrote:
>
>> > Take a look at rbash - restricted bash shell.
>> 
>> See and edit... I don't think rbash is going to help here.  You need a 
>> complete chrooted environment to work this out.  Do a google search on 
>> chroot.  I doubt you really want what you say you want, but if you do, 
>> that's the only way you are going to get it.  Hard links are your friend. 
>
> rbash does some interesting things which may be adequate depending on
> the level of security required. I noticed there are some problems with
> shell escapes in commands (vim) where you can escape to a bash shell and
> get out of the restricted environment.  

rbash works on shell level only so it doesn't provide any restrictions
if you can start programs that can execute other programs.


   Florian
-- 
<http://www.florian-diesch.de/>
-----------------------------------------------------------------------
**  Hi! I'm a signature virus! Copy me into your signature, please!  **
-----------------------------------------------------------------------




More information about the ubuntu-users mailing list