Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. sshd `Match` save me ..

sshd `Match` save me ..

Scheduled Pinned Locked Moved Uncategorized
9 Posts 4 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • fiore@brain.worm.pinkF This user is from outside of this forum
    fiore@brain.worm.pinkF This user is from outside of this forum
    fiore@brain.worm.pink
    wrote last edited by
    #1

    sshd Match save me ..

    coolbean@brain.worm.pinkC 1 Reply Last reply
    0
    • fiore@brain.worm.pinkF fiore@brain.worm.pink

      sshd Match save me ..

      coolbean@brain.worm.pinkC This user is from outside of this forum
      coolbean@brain.worm.pinkC This user is from outside of this forum
      coolbean@brain.worm.pink
      wrote last edited by
      #2
      @fiore sshd configuration is so fun /gen
      fiore@brain.worm.pinkF 1 Reply Last reply
      1
      0
      • R relay@relay.mycrowd.ca shared this topic
      • coolbean@brain.worm.pinkC coolbean@brain.worm.pink
        @fiore sshd configuration is so fun /gen
        fiore@brain.worm.pinkF This user is from outside of this forum
        fiore@brain.worm.pinkF This user is from outside of this forum
        fiore@brain.worm.pink
        wrote last edited by
        #3

        @coolbean im trying to do smth

        i have a Match Group where only sftp is allowed , through password auth , in a chroot . but i also want users to be able to change their password .. how do u think i could set this up

        jackemled@furry.engineerJ avery@furry.engineerA 2 Replies Last reply
        0
        • fiore@brain.worm.pinkF fiore@brain.worm.pink

          @coolbean im trying to do smth

          i have a Match Group where only sftp is allowed , through password auth , in a chroot . but i also want users to be able to change their password .. how do u think i could set this up

          jackemled@furry.engineerJ This user is from outside of this forum
          jackemled@furry.engineerJ This user is from outside of this forum
          jackemled@furry.engineer
          wrote last edited by
          #4

          @fiore @coolbean evil file created per user that only that user can access & the user types their new password in & an evil daily cronjob running as root sets the new password to that & then clears the contents of the file.

          Don't do this because it's evil.

          fiore@brain.worm.pinkF 1 Reply Last reply
          0
          • fiore@brain.worm.pinkF fiore@brain.worm.pink

            @coolbean im trying to do smth

            i have a Match Group where only sftp is allowed , through password auth , in a chroot . but i also want users to be able to change their password .. how do u think i could set this up

            avery@furry.engineerA This user is from outside of this forum
            avery@furry.engineerA This user is from outside of this forum
            avery@furry.engineer
            wrote last edited by
            #5

            @fiore kind of evil but maybe a separate ssh port where they can only access passwd, similar to them only accessing sftp-internal on this one

            avery@furry.engineerA fiore@brain.worm.pinkF 2 Replies Last reply
            0
            • avery@furry.engineerA avery@furry.engineer

              @fiore kind of evil but maybe a separate ssh port where they can only access passwd, similar to them only accessing sftp-internal on this one

              avery@furry.engineerA This user is from outside of this forum
              avery@furry.engineerA This user is from outside of this forum
              avery@furry.engineer
              wrote last edited by
              #6

              @fiore ok nvm i found this and it seems to work very well
              https://superuser.com/a/1154084

              only needed to change the path to /usr/lib/openssh/sftp-server and ForceCommand to point at where i saved the script

              then could run ssh test@localhost passwd

              fiore@brain.worm.pinkF 1 Reply Last reply
              0
              • jackemled@furry.engineerJ jackemled@furry.engineer

                @fiore @coolbean evil file created per user that only that user can access & the user types their new password in & an evil daily cronjob running as root sets the new password to that & then clears the contents of the file.

                Don't do this because it's evil.

                fiore@brain.worm.pinkF This user is from outside of this forum
                fiore@brain.worm.pinkF This user is from outside of this forum
                fiore@brain.worm.pink
                wrote last edited by
                #7

                @jackemled@furry.engineer @coolbean might honestly just write a wrapper script to allow both internal-sftp and passwd

                1 Reply Last reply
                1
                0
                • avery@furry.engineerA avery@furry.engineer

                  @fiore kind of evil but maybe a separate ssh port where they can only access passwd, similar to them only accessing sftp-internal on this one

                  fiore@brain.worm.pinkF This user is from outside of this forum
                  fiore@brain.worm.pinkF This user is from outside of this forum
                  fiore@brain.worm.pink
                  wrote last edited by
                  #8

                  @avery@furry.engineer thats SUPER evil

                  1 Reply Last reply
                  1
                  0
                  • avery@furry.engineerA avery@furry.engineer

                    @fiore ok nvm i found this and it seems to work very well
                    https://superuser.com/a/1154084

                    only needed to change the path to /usr/lib/openssh/sftp-server and ForceCommand to point at where i saved the script

                    then could run ssh test@localhost passwd

                    fiore@brain.worm.pinkF This user is from outside of this forum
                    fiore@brain.worm.pinkF This user is from outside of this forum
                    fiore@brain.worm.pink
                    wrote last edited by
                    #9

                    @avery@furry.engineer yep , i was thinking smth along these lines as well .

                    1 Reply Last reply
                    1
                    0
                    Reply
                    • Reply as topic
                    Log in to reply
                    • Oldest to Newest
                    • Newest to Oldest
                    • Most Votes


                    • Login

                    • Login or register to search.
                    • First post
                      Last post
                    0
                    • Categories
                    • Recent
                    • Tags
                    • Popular
                    • World
                    • Users
                    • Groups