Security Basics mailing list archives

Re: SSH mail server experiments


From: Christian Müller <brain () the-rip com>
Date: Tue, 19 Aug 2003 19:11:06 +0200

Hello,

ProFTP has a directive in its config file: RequireValidShell. Set it to "off" and your problem should be gone. Now only the users NOT in /etc/ftpusers have FTP access. Whether or not your console-based approach is prudent or not is a completely different matter. Personally, i'd have an uneasy feeling and would rather give them a mailer form. It's not difficult to create with PHP, most likely there even is a ready solution.

Kind regards,

Christian Müller



Meidinger Chris wrote:
why not just give them web mail?

badenIT GmbH
System Support
Chris Meidinger
Tullastrasse 70
79108 Freiburg


-----Original Message-----
From: chris Verhagen [mailto:chrisaster24747 () hotmail com]
Sent: Thursday, August 07, 2003 7:20 PM
To: security-basics () securityfocus com
Subject: SSH mail server experiments


A week ago I started a webhosting service for subdomains at http://crystal-ninja.cjb.net . Now, ofcourse, people need to ftp into their public_html directory in their home dirs. I'm using proFTPd for that. But now for the problem: I just got the idea to make a funny mail service. People should be able to just SSH into my server and instead of a shell, /bin/mail is loaded and they can do their thing. I've encountered problems with that... when experimenting i noticed it worked fine to just change /bin/bash in the passwd file to /bin/mail, but when i do this, people cant log into the FTP server anymore...
Is there an easy solution for this problem? Remember, i only want them to be

able to use /bin/mail! No shell!

_________________________________________________________________
The new MSN 8: smart spam protection and 2 months FREE* http://join.msn.com/?page=features/junkmail


---------------------------------------------------------------------------
----------------------------------------------------------------------------

---------------------------------------------------------------------------
----------------------------------------------------------------------------






---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: