ProFTP User can read all Directory!

3 posts / 0 new
Last post
#1 Wed, 06/17/2009 - 00:54
visu4582

ProFTP User can read all Directory!

Dear All,
I am getting problem with FTP Account if i create only FTP user account, user can read all directory, i want to restrict user in his/her home folder.

Below is proftp cofiguration
# This is a basic ProFTPD configuration file (rename it to
# 'proftpd.conf' for actual use. It establishes a single server
# and a single anonymous login. It assumes that you have a user/group
# "nobody" and "ftp" for normal operation and anon.

ServerName "ProFTPD Default Installation"
ServerType standalone
DefaultServer on

# Port 21 is the standard FTP port.
Port 21

# Don't use IPv6 support by default.
UseIPv6 off

# Umask 022 is a good standard umask to prevent new dirs and files
# from being group and world writable.
Umask 022

# To prevent DoS attacks, set the maximum number of child processes
# to 30. If you need to allow more than 30 concurrent connections
# at once, simply increase this value. Note that this ONLY works
# in standalone mode, in inetd mode you should use an inetd server
# that allows you to limit maximum number of processes per service
# (such as xinetd).
MaxInstances 30

# Set the user and group under which the server will run.
User nobody
Group nobody

# To cause every FTP user to be "jailed" (chrooted) into their home
# directory, uncomment this line.
DefaultRoot ~

# Normally, we want files to be overwriteable.
AllowOverwrite on

# Bar use of SITE CHMOD by default

DenyAll

# A basic anonymous configuration, no upload directories. If you do not
# want anonymous users, simply delete this entire section.

User ftp
Group ftp

# We want clients to be able to login with "anonymous" as well as "ftp"
UserAlias anonymous ftp

# Limit the maximum number of anonymous logins
MaxClients 10

# We want 'welcome.msg' displayed at login, and '.message' displayed
# in each newly chdired directory.
DisplayLogin welcome.msg
DisplayChdir .message

# Limit WRITE everywhere in the anonymous chroot

DenyAll

ServerName example.com

User ftp
Group ftp
UserAlias anonymous ftp

DenyAll

RequireValidShell off
ExtendedLog /home/slscorp/logs/ftp.log

Wed, 06/17/2009 - 02:19
Joe
Joe's picture

Are you sure that's the active configuration? The option "DefaultRoot ~" already jails all users into their home directory, and it appears you've already enabled it.

--

Check out the forum guidelines!

Thu, 06/18/2009 - 06:53
visu4582

After Compiling with new latest source 1.3.2 it solved.

Thanks for Your support.

Topic locked