[rsbac] A problem about vsftp

=?gb2312?q?=FFffffd2=FFffffe0=20=FFffffc1=FFffffd6?= wealet at yahoo.com.cn
Mon Feb 23 08:57:30 CET 2004


I created the template for my local ftp server.
When others try to connect to my server,it refuses the conneect request like that:500 OOPS:SETUID.

Amon Ott <ao at rsbac.org> wrote:
On Mittwoch, 18. Februar 2004 15:59, �ffffd2�ffffe0 �ffffc1�ffffd6 wrote:
> I'm running rsbac 1.2.2 on kernel 2.4.22.
> In order to use vsftp,i added a new net template named "FTP".
> Name : FTP
> No. 3000 
> Socket Type STREAM
> Address 0.0.0.0
> Valid Length 0
> Protocol TCP
> Network Device “�lt;br>> Min Port 20
> Max Port 21
> and a new NETOBJ type FTP . Set the FTP type to the FTP template. 
> Create a new role VSFtp and it has the R_CREATE, R_READ, R_ACCEPT, 
R_CONNECT, R_SEND, R_RECEIVE, R_NET_SHUTDOWN to the NETOBJ type FTP.
> Set VSFtp as the binary vsftpd's force_role.
> Add auth capbilities to change to "noboby" for vsftpd.

Is the template for a local server or a remote server you want to connect to?

> But when i attempt to connect to the ftp,it returns OOPS:SETUID.
> when RC is on and AUTH is off ,it returns Permission denied.

How did you create the new role? What does the log say?

If you want to create a new role, you should better copy an existing one - 
otherwise you have a role without any right, not even CHANGE_OWNER on PROCESS 
type 0...

Amon.
-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22

_______________________________________________
rsbac mailing list
rsbac at rsbac.org
http://www.rsbac.org/mailman/listinfo/rsbac


---------------------------------
Do You Yahoo!?
ÍêÈ«Ãâ·ÑµÄÑÅ»¢µçÓÊ£¬ÂíÉÏ×¢²á»ñÔù¶îÍâ60Õ×ÍøÂç´æ´¢¿Õ¼ä


More information about the rsbac mailing list