Finally managed to create a jailed SFTP server, but how secure?

Larry Hall (Cygwin) reply-to-list-only-lh@cygwin.com
Mon Dec 1 18:22:00 GMT 2008


Larry Hall (Cygwin) wrote:
> TheO wrote:
> 
> <snip>
> 
>> As far as I am concerned, user's view is restricted enough to what I
>> allow  them to see and do. If I revoke user's rights to write to any 
>> directory
>> except /jail/home/user, then he should only be able to upload files to 
>> his
>> jailed home directory.
>>
>> My question is, how secure is Cygwin as SFTP server set up this way? Is
>> there any security hole I don't know yet?

Ugh!  Looks like I'm challenged in the proof-reading department this
morning!

> Security from the standpoint of access to the remote file system and
> processes come from the security measures put in place under Windows
                 ^
                 s
> on the remote system.  SFTP under Cygwin will not provide this.  It
> only provids encrypted transport.
              ^
              e
> 


-- 
Larry Hall                              http://www.rfk.com
RFK Partners, Inc.                      (508) 893-9779 - RFK Office
216 Dalton Rd.                          (508) 893-9889 - FAX
Holliston, MA 01746

_____________________________________________________________________

A: Yes.
 > Q: Are you sure?
 >> A: Because it reverses the logical flow of conversation.
 >>> Q: Why is top posting annoying in email?

--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Problem reports:       http://cygwin.com/problems.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/



More information about the Cygwin mailing list