suggestion for the restricted ssh shell

Derek D. Martin ddm+gnhlug at pizzashack.org
Mon Aug 19 03:33:50 EDT 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

At some point hitherto, John Abreau hath spake thusly:
> Derek; 
> 
> In regards to the dummy shell you wrote that restricts itself to scp and
> sftp-server commands, it might be useful to also permit imapd and popd.

It's not a bad idea, but I think it would be easy to make any number
of requests like this.  Someone will think it's a good idea to add lpr
to the list... and so on.  I really don't want to get into the role of
writing a configurable restricted shell...  

OTOH, I have made some updates to the shell, including a cheesy,
home-grown configure/make build environment, and several bugs.  I
still don't have any docs though.  ;-)

Feel free to have a look.  http://www.pizzashack.org/rssh/

> I use fetchmail through an ssh tunnel, where it invokes imapd in
> preauth mode. Here's what I have in my .fetchmailrc:

I've always thought this was really cool.  Never got around to setting
it up though.



- -- 
Derek Martin               ddm at pizzashack.org    
- ---------------------------------------------
I prefer mail encrypted with PGP/GPG!
GnuPG Key ID: 0x81CFE75D
Retrieve my public key at http://pgp.mit.edu
Learn more about it at http://www.gnupg.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE9YJ9ddjdlQoHP510RAoiYAJ9RcLnyXzwffuyInz2JTVVqZEwD4ACfXuP5
s+5b8v8vTO4NnqS9yw3vDJE=
=qJyl
-----END PGP SIGNATURE-----



More information about the gnhlug-discuss mailing list