OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Peter Pentchev (roamringlet.net)
Date: Mon Nov 05 2001 - 09:46:39 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Mon, Nov 05, 2001 at 06:51:52PM +0300, Alexander S. Volchenkov wrote:
    > Hi All!
    >
    > I've just installed ssh2 and trying to implement it's chroot feature.
    > I have a problem with user login.
    >
    > User "dummy" is in the "chrooted" group. His home directory :
    > /home/chrooted/dummy contains bin subdirectory with a mirror of /bin.
    > User's shell is /bin/sh. Command: chroot /home/chrooted/dummy works fine.
    >
    > From /etc/sshd2_conf:
    > -------------------------------------------
    > AllowGroups chrooted
    > ChRootGroups chrooted
    > -------------------------------------------
    >
    > Client session:
    > -------------------------------------------
    > gate# ssh2 -l dummy localhost
    > dummylocalhost's password:
    > Authentication successful.
    > Connection to localhost closed.
    > ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
    > -------------------------------------------
    >
    > tail /var/log/messages:
    > -------------------------------------------
    > sshd[16513]: User dummy's local password accepted.
    > sshd[16513]: Password authentication for user dummy accepted.
    > sshd[16513]: User dummy, coming from localhost.sbm, authenticated.
    > -------------------------------------------
    >
    > What I need to do to fix it?

    On the server, stop any sshd's running, then run an 'sshd -d' and
    watch its output.

    G'luck,
    Peter

    -- 
    This sentence was in the past tense.
    

    To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message