Updating srvtftp directories for chroot optltspi386

Depending on what you want to provide, you will need to install additional libraries and binaries.One idea might be to have a chroot setup that is a minimal distribution install.jailkit(8) jk_check(8) jk_chrootlaunch(8) jk_chrootsh(8) jk_cp(8) jk_init(8) jk_jailuser(8) jk_list(8) jk_lsh(8) jk_procmailwrapper(8) jk_socketd(8) jk_uchroot(8) chroot(2) Copyright (C) 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010 Olivier Sessink Copying and distribution of this file, with or without modification, are permitted in any medium without royalty provided the copyright notice and this notice are preserved..

updating srvtftp directories for chroot optltspi386-53

Then edit / represents in the Chroot Directory command), forces the use of the internal-sftp helper, and disables TCP port forwarding.

The Subsystem command previously enabled is required to enable the use of the SFTP subsystem.

"Avoid unwanted updates or cleanups" To avoid unwanted updates, or to avoid files being deleted, files or directories can be skipped by jk_update, either by specifying them on the commandline or by specifying them in the configfile.

"Directories to include in the update" By default jk_update will scan /usr, /bin, /opt, and /lib for updates.

For instance, with Mandriva you can install a second copy of the operating system using urpmi in the /chroot directory.

All authentication information is taken from the host, so there is no need to create and maintain user passwords inside the chroot, and this would allow for another degree of separation from the main/host operating system to where users are permitted access, effectively jailing them inside a second OS with limited tools and functionality.

Files that do not exist on the real system will be deleted in the jail..

jk_update works well to pass security updates on the real system to a jail.

In the default fat client configuration however, users are permitted to ssh into the server and may be able to view other user's files (based on normal file permissions), execute programs they are not intended to, or attempt to compromise the security of the server.

