Topic "BASH on Ubuntu = Hacked box"

Author Message
Erik

Guest


I was wondering if there is a way of NOT using bash with this. I dont have a clue on earth why WinSCP does not like jk_lsh !!! Jailkit is the bomb! Had to change

jailuser:x:1013:1013:jailuser,,,:/home/jailuser:/usr/sbin/jk_lsh
to
jailuser:x:1013:1013:jailuser,,,:/home/jailuser:/bin/bash

Sure I got it working with bash but when I asked my friends to hack/crash my box they did it in no time. One friend made a script with CAT that filled my HD with YOU SUCK and the next day my computer was down. That is now fixed since I put the jail on a disk-img using Quota. My friends are like flies on poo and Snort is picking up all sorts of ways they are messing with my box. There are just too many tools that can be used with basic Bash. I just want people to ONLY see their home. Dont want to add basicshell stuff that ppl can see or use.

Ubuntu Hardy server (Soon to be EnGarde Secure Linux)
LAMP
Jailkit on Quota disk-img - SCP SFTP for WinSCP

Sucks that I have to use basicshell to work with WinSCP!
martin
[View user's profile]
Site Admin
Joined: 2002-12-10
Posts: 24530
Location: Prague, Czechia
Please post a log file showing WinSCP session with jk_lsh.
_________________
Martin Prikryl
Advertisements

You can post new topics in this forum






Search Site

What is WinSCP?

It is award-winning SFTP client, SCP client, FTPS client and FTP client integrated into one software program for file transfer to FTP server or secure SFTP server. [More]

And it's free!

Donate

About donations

$9   $19   $49   $99

About donations

Recommend

WinSCP Privacy Policy

WinSCP License