DSM-G600, DNS-3xx and NSA-220 Hack Forum

Unfortunately no one can be told what fun_plug is - you have to see it for yourself.

You are not logged in.

Announcement

#1 2008-06-24 19:10:51

Levis
Member
Registered: 2008-05-06
Posts: 40

Proftpd and AuthUserFiles

Hi,

I'm using proftpd from ffp 0.5.
All the config is ok, ftp is running well.

But I have a problem.

If I create a generic user with a generic group this user can connect to ftp with standard procedure of login & password.
But, as I can see from /etc/passwd he can connect also with a shell, ssh for example.
So even if I chroot the user to their home, with the shell the user can navigate wherever he want.
If I disable the shell from passwd (/bin/false) he can't connect to ftp.

So I've read that I can use an external AuthUserFiles and AuthUserGroup in addition to /etc/passwd, where I can store other users and stop them from using the shell.
But I don't know how to create it sad I know that it's in the same format of passwd, but manually I don't know what I have to do.
I've seen a proftptools that makes it, but it seems written in perl and I don't think I can use it with dns323.

Any idea or suggestion?
What kind of users do you have configured in your ftp? All with shell access? sad

Offline

 

#2 2008-06-24 19:27:24

fonz
Member / Developer
From: Berlin
Registered: 2007-02-06
Posts: 1716
Website

Re: Proftpd and AuthUserFiles

There's no proftpd in ffp 0.5. Maybe it's part of the firmware?
But there's perl in ffp 0.5. Unless the proftptools use additional modules, it should run fine.

Offline

 

#3 2008-06-24 19:47:06

Levis
Member
Registered: 2008-05-06
Posts: 40

Re: Proftpd and AuthUserFiles

I've used this version of proftpd.
http://dns323.kood.org/forum/t1939-Addo … ental.html

But maybe I've resolved with:
"RequireValidShell off"
option in proftpd.conf

In negative case I'll try with the perl in ffp 0.5, I feel so stupid in this moment tongue

Offline

 

Board footer

Powered by PunBB
© Copyright 2002–2010 PunBB