Man page - rssh.conf(5)
Manual
RSSH.CONF
æĻ čĻč¨ åŽ ã ãŧ 㯠ãŧ ã
éĸ éŖ é įŽ
/etc/rssh.conf - rssh ãŽ č¨ åŽ ã ãĄ ã¤ ãĢ
æĻ čĻ
rssh.conf 㯠rssh ãŽ č¨ åŽ ã ãĄ ã¤ ãĢ ã§ ã ã ã ã ã ãĢ ã ã ã ãˇ ãš ã ã įŽĄ į č ã¯ ãˇ ã§ ãĢ ãŽ å ã ã åļ åžĄ ã§ ã ã ã ã ãĢ ãĒ ã ã č¨ åŽ ãĢ äŊŋ ã ã ãŧ 㯠ãŧ ã 㯠ã ã ã čĒ čēĢ ã§ čĄ ã æ§ æ ã ã ã ã ãž ã 㯠ã ã ãĢ įļ ã ã¤ ãŗ ãŧ ãĢ č¨ åˇ (â=â)ã¨ č¨ åŽ å¤ ã¨ ã¨ ã ãĢ äŊŋ ã ã ã ã ãŗ ãĄ ãŗ ã 㯠㯠ã ãš ã ã ã (â#â)ã§ å§ ãž ã ã čĄ ãŽ äģģ æ ãŽ å ´ æ ãĢ įŊŽ ã ã 㨠ã ã§ ã ã ã č¨ åŽ ãĒ ã ãˇ ã§ ãŗ ã§ ã¯ å¤§ æ å ã¨ å° æ å ã åē åĨ ã ãĒ ã ã čĄ ãŽ å é ã čĄ ãŽ įĩ ã ã ã¤ ãŗ ãŧ ãĢ č¨ åˇ ã¨ ã ãŧ 㯠ãŧ ã ã å¤ ã¨ ãŽ é ㎠įŠē įŊ ã¯ įĄ čĻ ã ã ã ã ã ã č¨ åŽ å¤ ã įŠē įŊ ã åĢ ã ㎠㧠ã ã ã° ã ã ã (å° ãĒ ã 㨠ã ã ㎠įŠē įŊ )ã¯ ãˇ ãŗ ã° ãĢ ã¯ ãŠ ãŧ ã ãž ã 㯠ã ã ãĢ ã¯ ãŠ ãŧ ã ã§ å˛ ãž ã ãĻ ã ãĒ ã ã ã° ãĒ ã ãĒ ã ã
ã ã ㊠ãĢ ã ãŽ č¨ åŽ ã ãĄ ã¤ ãĢ ã¯ ã rssh ㎠ãŊ ãŧ 㚠㨠㨠ã ãĢ æ äž ã ã ã ã č¨ åŽ ã ãĄ ã¤ ãĢ ã ãĒ ã å ´ å 㯠æŦĄ ㎠ã ã ㊠ãĢ ã å¤ ã äŊŋ ã ã ã ã umask 㯠022 ã§ scp ㎠ãŋ ã 訹 å¯ ã ã ã ã č¨ åŽ ã ãĄ ã¤ ãĢ ã ã ã å ´ å 㯠ã scp 㨠sftp ãŽ ãŠ ãĄ ã ã æ į¤ē į ãĢ č¨ą å¯ ã ã ãĻ ã ãĒ ã ã ã° ã ãĻ ãŧ ãļ 㯠é ã åē ã ã ã ã
v2.1 ã ã 㯠ã user ã ãŧ 㯠ãŧ ã ã äŊŋ ãŖ ã ãĻ ãŧ ãļ ã ã¨ ãŽ č¨ åŽ ãĒ ã ãˇ ã§ ãŗ ã äŊŋ į¨ ã§ ã ã ã čŠŗ į´° 㯠čŋŊ ãŖ ãĻ čĒŦ æ ã ã ã
č¨ åŽ ã ãŧ 㯠ãŧ ã
allowscp
scp ã 訹 å¯ ã ã ãĻ ã ã ã 㨠ã į¤ē ã ã
allowsftp
sftp ã 訹 å¯ ã ã ãĻ ã ã ã 㨠ã į¤ē ã ã
allowcvs
cvs ã 訹 å¯ ã ã ãĻ ã ã ã 㨠ã į¤ē ã ã
allowrdist
rdist ã 訹 å¯ ã ã ãĻ ã ã ã 㨠ã į¤ē ã ã
allowrsync
rsync ã 訹 å¯ ã ã ãĻ ã ã ã 㨠ã į¤ē ã ã
|
umask |
scp/sftp ãģ ã ãˇ ã§ ãŗ ã§ äŊ æ ã ã ã ãĄ ã¤ ãĢ ãŽ umask å¤ ã č¨ åŽ ã ã ã é 常 㯠ã ã ã° ã¤ ãŗ æ ãĢ ãĻ ãŧ ãļ ãŽ ãˇ ã§ ãĢ ãĢ ã ãŖ ãĻ č¨ åŽ ã ã ã ã ãˇ ãš ã ã ã ã ㊠ãĢ ã ã äŊŋ ã ãĒ ã ã ã ãĢ ã ã ã ã ãĢ ã rssh 㯠umask ã č¨ åŽ ã ãĒ ã ã ã° ãĒ ã ãĒ ã ã |
logfacility
rssh ã ã ã° åē å ã ã ã 㨠ã ã syslog ãŽ æŠ čŊ å éĄ (facility)ã æ åŽ ã ã ã æŠ čŊ å éĄ ã¯ syslogd.conf (5) ã§ äŊŋ ã ã ãĻ ã ã ã ㎠㨠å ã ã ㎠㧠ã ã ã äģŖ ã ã ãĢ C ㎠ã 㯠ã ã äŊŋ ãŖ ãĻ æ åŽ ã ã ã 㨠ã ã§ ã ã ã ã 㨠ã ã° ã
logfacility=user
logfacility=LOG_USER
ã¯ å ¨ ã å ã ã§ ã rssh ãĢ æŠ čŊ å éĄ user ã äŊŋ ãŖ ãĻ syslog 㸠㎠ã ã° åē å ã čĄ ã ã ã ã
chrootpath
rssh (åŽ é ãĢ ã¯ čŖ åŠ ã ã 㰠㊠ã )ã chroot () ãˇ ãš ã ã ãŗ ãŧ ãĢ ã åŧ ã ã§ ã æ åŽ ã ã ã ã ãŖ ãŦ 㯠ã ãĒ ãĢ ã ãĄ ã¤ ãĢ ãˇ ãš ã ã ㎠ãĢ ãŧ ã ã ãŖ ãŦ 㯠ã ãĒ ã å¤ æ´ ã ã ã äž ã ã° ã
chrootpath=/usr/chroot
㯠äģŽ æŗ į ãĒ ã ãĄ ã¤ ãĢ ãˇ ãš ã ã ㎠ãĢ ãŧ ã ã /usr/chroot ãĢ å¤ æ´ ã ã ã ãĄ ã¤ ãĢ ãˇ ãš ã ã ㎠/usr/chroot ãŽ ä¸ äģĨ å¤ ãĢ ãĻ ãŧ ãļ ã ãĸ 㯠ãģ ãš ã§ ã ãĒ ã ã ã ãĢ ã ã /usr/chroot ã ãĢ ãŧ ã ã ãŖ ãŦ 㯠ã ãĒ ã¨ ã ãĻ čĻ ã ã ã ã ãĢ ã ã ã chroot jail ã éŠ å ãĢ č¨ åŽ ã ã ã ã ãĢ æŗ¨ æ ã ã ã 㨠ã ㊠㎠ã ã ãĢ ã ã ã ã ã ã ㎠ã ãŗ ã ãĢ ã¤ ã ãĻ ã¯ ã rssh ãŊ ãŧ 㚠㨠㨠ã ãĢ é å¸ ã ã ã CHROOT ã ãĄ ã¤ ãĢ ã čĻ ã ã 㨠ã ãž ã chroot (2) ㎠man ã ãŧ 㸠ã å į § ã ã ã 㨠ã
ã ã (/etc/password ã§ æ åŽ ã ã ã )ãĻ ãŧ ãļ ㎠ã ãŧ ã ã ãŖ ãŦ 㯠ã ãĒ ã ã ã ㎠ã ãŧ 㯠ãŧ ã ã§ į¤ē ã ã ã ã ãš äģĨ ä¸ ã§ ã ã ã° ã ãĻ ãŧ ãļ 㯠ã ãŧ ã ã ãŖ ãŦ 㯠ã ãĒ ã¸ ã¨ chdir ã ã ã ã ã ã ã§ ãĒ ã ã ã° ã chroot jail ㎠/ 㸠㨠chdir ã ã ã ã
|
user |
user ã ãŧ 㯠ãŧ ã 㯠ãĻ ãŧ ãļ ã 㨠㎠ãĒ ã ãˇ ã§ ãŗ č¨ åŽ ã å¯ čŊ ãĢ ã ã ã ã ㎠ã ãŧ 㯠ãŧ ã ã¯ ã æ åŽ ã ã ã ãĻ ãŧ ãļ ㎠ã ãš ãĻ ãŽ äģ ㎠ã ãŧ 㯠ãŧ ã ã ä¸ æ¸ ã ã ã ã ã ãĒ ã ãĄ ã ãĻ ãŧ ãļ foo ãĢ user ã ãŧ 㯠ãŧ ã ã äŊŋ ፠ã ã ãĒ ã ã user čĄ ãĢ ã ã č¨ åŽ ã ã ã ãĻ ãŧ ãļ foo ãĢ äŊŋ ፠ã ã ã äģ ãž ã§ ãĢ čŋ° ãš ã ã ãŧ 㯠ãŧ ã ãĢ ã ã ã ãš ãĻ ãŽ č¨ åŽ ã¯ įĄ čĻ ã ã ã ã user ã ãŧ 㯠ãŧ ã ㎠åŧ æ° ã¯ ã ãŗ ã ãŗ (â:â)ã§ åē å ã ã ã ã äģĨ ä¸ ãĢ į¤ē ã ã ãŖ ãŧ ãĢ ã ㎠ã ã ãž ã ã ã ãĒ ã ã ã ãŖ ãŧ ãĢ ã 㯠ã é įĒ ãĢ : |
username
ã ãŽ ã¨ ãŗ ã ãĒ ã ãĒ ã ãˇ ã§ ãŗ ã æ äž ã ã ãĻ ãŧ ãļ å
|
umask |
ã ㎠ãĻ ãŧ ãļ ãŧ ㎠8 é˛ æ° ã§ ãŽ umask å¤ ã§ ã ãˇ ã§ ãĢ ã§ č¨ åŽ ã ã ㎠㨠å ã æ åŗ ã§ ã ã ã |
access bit
5å ㎠0/1 ã§ ã rsync, rdist, cvs, sftp, scp ㎠é ãĢ ã ãĻ ãŧ ãļ ãŧ ã ã ã ã ã 訹 å¯ ã ã ã ã ã į¤ē ã ã 1 ã¯ ãŗ ã ãŗ ã ã 訹 å¯ ã ã ã 0 ã¯ č¨ą å¯ ã ã ãĒ ã ã ã¨ ã æ åŗ ã ã ã
|
path |
ã ㎠ãĻ ãŧ ãļ ãŧ ã chroot ã ã ã ãš ã ã ãš ã |
äž ã ã° ã äģĨ ä¸ ãŽ ã ã ãĒ čĄ ãĢ ãĒ ã ã
user = luser:022:00001:
ã ã 㯠æŦĄ ㎠ã ã ãĒ æ åŗ ãĢ ãĒ ã ã ãĻ ãŧ ãļ å "luser" ãĢ ã¤ ã ãĻ ã umask ã 022 ãĢ č¨ åŽ ã ã sftp ã 訹 å¯ ã ã ã scp ã 訹 å¯ ã ã ã chroot ã ãš ã æ åŽ ã ã ãĻ ã ãĒ ã ㎠㧠ã äģ ㎠ã ãŧ 㯠ãŧ ã 㧠㎠ã ã ㊠ãĢ ã ãĒ ã ãˇ ã§ ãŗ ãĢ ã ã ã ã ã ã ãĻ ãŧ ãļ 㯠chroot ã ã ãĒ ã ã ã ㎠ãĻ ãŧ ãļ ãŧ ã chroot ã ã ã ã ã ãĢ ã ã ãĒ ã ã° ã ã 㨠ã chrootpath ã ãŧ 㯠ãŧ ã ã äŊŋ ãŖ ãĻ č¨ åŽ ã ã ã ㎠㨠å ã ã§ ã ãŖ ãĻ ã ã æ į¤ē į ãĢ chroot ã ãš ã æ åŽ ã ã åŋ čĻ ã ã ã ã ã ã path ãĢ įŠē įŊ ã ã ã ã° ã äģĨ ä¸ ãŽ ã ã ãĢ ã ã ã æŦ ã åŋ čĻ ã ã ã ã ã¨ ã æ ã åē ã ãĻ æŦ˛ ã ã ã
user = "luser:022:00001:/usr/local/chroot dir"
ã ã ãĒ ã äž ãĢ ã¤ ã ãĻ ã¯ ã ã ã ㊠ãĢ ã ㎠rssh.conf ã ãĄ ã¤ ãĢ ã å į § ㎠ã 㨠ã
éĸ éŖ é įŽ
rssh (1), sshd (8), ssh (1), scp (1), sftp (1), syslogd.conf (5), chroot (2).