Re: Is ssh not safe?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Behold, Alexander Dalloz <alexander.dalloz@xxxxxxxxxxxxxxxx> hath decreed:
> Am So, den 25.07.2004 schrieb Brentley um 3:44:
> 
> > I've always been fond of the rbash shell... symbolic link bash to
> > rbash, then set their shell to /bin/rbash.... pretty cool.
> 
> What should that be? Restricting morons?
> 
> I suggest you do it yourself and then when logged in with such an rbash
> shell you enter "bash" and then rethink the sense of such a shell
> setting ;)

Fortunately, restricted mode is a little more intelligent than that. It will
not allow you to specify "/" in command names, and PATH is a read-only
variable. So, properly configured, a restricted bash shell can provide a
little more semblance of security thatn you let on, though it surely is not
a panacea.

> 
> Alexander
> 
> 
> -- 
> Alexander Dalloz | Enger, Germany | GPG key 1024D/ED695653 1999-07-13
> Fedora GNU/Linux Core 2 (Tettnang) kernel 2.6.6-1.435.2.3.ad.umlsmp 
> Serendipity 04:24:16 up 2 days, 13:12, load average: 2.92, 1.92, 1.58 



> -- 
> fedora-list mailing list
> fedora-list@xxxxxxxxxx
> To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list


-- 

prothonotar at tarnation.dyndns.org
"Every man is a mob, a chain gang of idiots." 
                           - Jonathan Nolan, /Memento Mori/
  

Attachment: pgpompAX1TPzB.pgp
Description: PGP signature


[Index of Archives]     [Current Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Yosemite News]     [Yosemite Photos]     [KDE Users]     [Fedora Tools]     [Fedora Docs]

  Powered by Linux