This is the mail archive of the
cygwin
mailing list for the Cygwin project.
Fw: Finally managed to create a jailed SFTP server, but how secure?
- From: TheO <idgajelas at yahoo dot com>
- To: cygwin at cygwin dot com
- Date: Fri, 5 Dec 2008 11:41:40 -0800 (PST)
- Subject: Fw: Finally managed to create a jailed SFTP server, but how secure?
> What about:
>
> $ sftp localhost
> Connecting to localhost...
> sftp> symlink 'C:\Windows' bar
> sftp> cd bar
Sorry I missed out the ', here we go again with ' this time:
sftp> symlink 'C:\foobar' foobar
sftp> symlink 'C:\windows' windows
sftp> ls -al
drwxr-xr-x 2 root root 0 Dec 5 19:37 .
drwxr-xr-x 3 root root 0 Dec 4 16:22 ..
-rw-r--r-- 1 root root 34 Dec 5 15:52 bar
lrwxrwxrwx 1 root root 4 Dec 5 15:49 foo
lrwxrwxrwx 1 root root 9 Dec 5 19:37 foobar
sftp> get foobar
Fetching /home/Administrator/foobar to foobar
Couldn't stat remote file: No such file or directory
sftp> cd windows
Couldn't canonicalise: No such file or directory
Same result though
--
Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple
Problem reports: http://cygwin.com/problems.html
Documentation: http://cygwin.com/docs.html
FAQ: http://cygwin.com/faq/