Ezweni lethu kunezimfihlo eziningi, eziningi… Ngokweqiniso angicabangi ukuthi ngingafunda ngokwanele ukwazi iningi lazo, futhi lokhu kunikezwa iqiniso elilula lokuthi iLinux isivumela ukuba senze okuningi, kepha izinto eziningi kunzima ukuthi sizazi zonke.
Ngalesi sikhathi ngizochaza ukuthi ungayenza kanjani into ewusizo olukhulu, into iningi labaphathi benethiwekhi noma bohlelo okudingeka bayenze, futhi sikuthole kunzima ukuthi singamane sithole indlela elula yokukufeza:
Ungabagcina kanjani abasebenzisi abasebenzisi be-SSH
ikheji? … WTF!
Yebo. Uma nganoma yisiphi isizathu kufanele sinikeze i-SSH ukufinyelela kumngane wethu kukhompyutha yethu (noma iseva), kufanele ngaso sonke isikhathi sinakekele ukuphepha nokuzinza kwekhompyutha noma iseva yethu.
Kwenzeka ukuthi muva nje besifuna ukunika uPerseus SSH ukufinyelela kuseva yethu, kepha asikwazi ukumnika noma yiluphi uhlobo lokufinyelela ngoba sinokulungiswa okubucayi lapho (sihlanganise izinto eziningi, amaphakheji esiwafakile ngakunye, njll.) Futhi uma umuntu ongakwenzi lokho Noma ngabe ngizama ukwenza ushintsho oluncane kakhulu kuseva, kunethuba lokuthi yonke into izomoshakala hehe.
Ngakho, Ungawakha kanjani umsebenzisi ngamalungelo alinganiselwe ngokweqile, kangangoba akakwazi nokuphuma ehokweni lakhe (ekhaya)?
Ake siqale ngokulanda isiboshwa, ithuluzi elizosivumela ukuthi senze lokhu:
1. Okokuqala kufanele silande iseva yethu yeJailKit.
wget http://ftp.desdelinux.net/jailkit-2.14.tar.gz
2. Ngemuva kwalokho kufanele sikhiphe iziphu kuziphu bese sifaka ifolda esanda kuvela:
tar xzf jailkit-2.14.tar.gz && cd jailkit-2.14
3. Kamuva saqhubeka nokuhlanganisa nokufaka isoftware (Ngikushiya isithombe-skrini):
./configure
make
make install
4. Silungile, lokhu sekuvele kufakiwe. Manje siqhubeka nokwakha ikheji elizoqukatha abasebenzisi besikhathi esizayo, kimi ngilidale ngo: / opt / ngalibiza ngokuthi "ijele", ngakho-ke indlela izoba yile: / opt / ijele :
mkdir /opt/jail
chown root:root /opt/jail
5. Ihhoko selivele lidaliwe, kepha alinawo wonke amathuluzi adingekayo ukuze abasebenzisi besikhathi esizayo abazobe bekhona bakwazi ukusebenza ngaphandle kwezinkinga. Ngisho, kuze kube manje leli khaya lenziwe, kepha liyibhokisi elingenalutho nje. Manje sizofaka enkanjini amanye amathuluzi abasebenzisi abazokwazi ukuwadinga:
jk_init -v /opt/jail basicshell
jk_init -v /opt/jail editors
jk_init -v /opt/jail extendedshell
jk_init -v /opt/jail netutils
jk_init -v /opt/jail ssh
jk_init -v /opt/jail sftp
jk_init -v /opt/jail jk_lsh
6. Silungile, ikheji likhona futhi selivele linamathuluzi umsebenzisi angalisebenzisa ... manje sidinga kuphela ... umsebenzisi! Ake sakhe umsebenzisi Kira futhi sizoyifaka esibayeni.
adduser kira
jk_jailuser -m -j /opt/jail kira
cat /etc/passwd | grep jk_chroot
Uma ubona ukuthi akukho lutho olufana nesithombe-skrini esivelayo, kufanele ngabe wenze okuthile okungalungile. Shiya amazwana lapha futhi ngizokusiza ngenjabulo.
7. Futhi i-voila, umsebenzisi usevele efakwe ikheji ... kepha, uvalelwe i-SO, ukuthi akakwazi ukuxhuma nge-SSH, ngoba lapho ezama ukuxhuma iseva ayimvumeli:
8. Ukuvumela umsebenzisi ukuthi axhume kufanele senze esinye isinyathelo esisodwa.
Kufanele sihlele ifayela le-etc / passwd lekheji, okungukuthi, kulokhu kungaba njalo / opt / ijele / njll / passwd , kuwo siphawula kulayini womsebenzisi esiwenzile, bese sengeza entsha enjenge:
kira: x: 1003: 1003 :: / home / kira: / bin / bash
Okusho ukuthi, sizoba nefayela elinje i-passwd:
impande: x: 0: 0: impande: / impande: / bin / bash
#kira: x: 1003: 1003: ,,,: / opt / ijele /./ ikhaya / kira: / usr / sbin / jk_lsh
kira: x: 1003: 1003 :: / home / kira: / bin / bash
Qaphela kahle izimpawu zokuloba eziyimpinda nokunye, kubalulekile ukuthi ungazishiyi ezinye zazo 🙂
Ngemuva kokwenza lokhu, umsebenzisi angangena ngaphandle kwenkinga 😀
Futhi yilokho kuphela.
Ithuluzi esilisebenzisela konke lokhu (isiboshwa) sebenzisa ngemuva impumu. Kodwa-ke ukusebenzisa iJailKit kuba lula ukufaka ikheji 😉
Uma umuntu enenkinga noma kukhona okungahambi kahle, shiya imininingwane eminingi ngangokunokwenzeka, angiziboni ngingochwepheshe kepha ngizokusiza ngangokunokwenzeka.
lapho-ke kungaba yinto efana nezimvume ku-FTP? kuyaheha
uhlala uphuma nakho konke obungazi nokuthi kukhona, njengabasebenzisi be-mysql xD
Hhayi kahle, ngoba i-SSH ayifani ne-FTP. I-SSH igobolondo, okungukuthi, i-terminal ... ubuzoba se-terminal kwenye ikhompyutha noma iseva, ungenza imiyalo, uqalise izinqubo, njll. ... uzokwenza njengoba nje umlawuli we-server ekuvumela allows
hahahahaha nah woza, okwenzekayo ukuthi ngishicilela izinto zobuchwepheshe eziningi ... okungukuthi, ngithanda ukushicilela izinto ezincane ezingathandwa kangako nezithandekayo. Isibonelo, ngokwami angihleleli ukushicilela okuthile ngosuku okuphuma ngalo Ubuntu obusha, ngoba ngikholwa ukuthi abaningi bazobe sebekhuluma ngakho ... kodwa-ke, okufundayo lapha eposini, akuyona yini into efundwa yonke usuku noma cha? 😀
Ngiyabonga kakhulu ngeminikelo emihle
kukhona futhi umthetho olandelwayo obizwa nge-sftp okuyi-ftp ne-Secure Shell ndawonye, yize kungafani nokusebenzisa i-FTP nge-SSH: \
Phendula ngokucaphuna
Yebo yebo kunjalo, kepha ngokufaka i-SSH ngifaka ngokuzenzakalela noma ngubani oxhuma esebenzisa i-SFTP, ngoba njengoba usho, i-SFTP empeleni iyi-SSH + FTP 😀
Phendula ngokucaphuna
Izithombe azibonakali !!! 🙁
Iphutha elincane lami hehe, ngitshele manje 😀
Ilungile. Ngiyabonga 😀
kuhle kakhulu, ngiyikhomba kuzintandokazi zami ukuze ngitholakale lapho ngiyidinga lol
Ngiyabonga, noma yimiphi imibuzo noma izinkinga, silapha ukukusiza 🙂
BanoPerseus esibayeni. http://i.imgur.com/YjVv9.png
LOL
xD
Unjani.
Uyazi, kuyisihloko engingasazi kangako nokuthi bengikade ngibheka ku-BSD (PC-BSD naseGhost BSD) futhi ngikuthola kuthakazelisa kakhulu futhi kunemisebenzi engaba wusizo olukhulu.
Ngizoyigcina ukuze isetshenziswe futhi ngiyibheke ngokumelene ne-BSD doc. Siyabonga ngolwazi.
Nami bengingakujwayele lokhu, ngoba angikaze ngicabange ukunika umuntu othile i-SSH ukufinyelela kunoma yimaphi amaseva ami haha, kepha lapho ngithola isidingo sokwenza kanjalo, bengifuna ukunikeza ukufinyelela kepha ngaphandle kokuthi kungenzeka ukuthi othile ngephutha enze okuthile lokho bekungamele 😀
Angikaze ngizame lokhu ezinhlelweni ze-BSD, ngakho-ke angikwazi ukukutshela ukuthi kuzosebenza, kepha uma ufuna ukuthi ungayishaya kanjani i-BSD, kufanele kuvele okuthile 😉
Ngiyabonga ngokuphawula mngani 🙂
Sawubona, ngisebenzisa iFreeBSD futhi kunjalo i-jailkit isebenza empeleni lokhu emachwebeni
Uyifaka ngalo myalo
cd / usr / amachweba / amagobolondo / i-jailkit / && yenza ukufaka kuhlanzeke
Noma nge-ftp packet
i-pkg_add -r ejele
Kukucushwa kuphela (kira: x: 1003: 1003 :: / home / kira: / bin / bash)
Udinga ukungeza i-tcsh noma i-sh, ngaphandle kokuthi ufake i-bash bese ungeza le ndlela
/ usr / wendawo / bin / bash
Nemininingwane embalwa, ku-Ghost BSD kufanele kube inqubo efanayo ngisho elula njengoba isuselwa ku-FreeBSD
Phendula ngokucaphuna
Kuhle, bengikufuna; uyazi ukuthi isebenza kumaCentos ?? ngiyabonga.
Angikayihloli kumaCentos, kepha yebo, kufanele isebenze :)
Eqinisweni ngiyakhumbula ukuthi abaningana basebenzise leli thuluzi elifanayo kuma-Centos naku-Red Hat server 😉
Ngibonga kakhulu. Iya ngqo kumabhukhimakhi.
Ngiyabonga ngokuphawula 🙂
"Icebo" elihle kakhulu, liwusizo olukhulu kubaphathi be-sys. Kepha okungcono kakhulu, kubhalwe kahle kakhulu. Yini enye ongayifuna.
Ngiyabonga kakhulu ngomnikelo.
Ngiyabonga, ngiyabonga kakhulu ngokuphawula kwakho 😀
Phendula ngokucaphuna
Dumisani i-SSH haha
Ngake ngazama ukwenza ikheji le-ssh kepha ngesitayela sendabuko futhi iqiniso ukuthi alikaze liphume kahle. Uma i-cage ibisebenza, ibingenayo ngisho i-bash, okungukuthi, ixhunyiwe futhi bekungekho lutho olusele haha, uma igobolondo belisebenza, lingakhuphuka kubaphathi besikhombi kanye nama-quilombos amaningi haha kepha le jele lejele liyi-mace, lisebenzisa zonke lezo zinto ... kunconyiwe
haha ngiyabonga.
Yebo, empeleni i-SSH iyisimangaliso salokho esivumela khona, okungelutho nje kuphela kunalokho okuvumela uhlelo ... … Haha.
Sawubona, umbuzo!
kungani ushintsha ikhaya lisuka ku- (1) / opt / ijele /./ ikhaya / kira liye ku- (2) / home / kira
Kufanele sihlele ifayili njll / i-passwd yezinyoni, okungukuthi, kuleli cala kuzoba / opt / jail / etc / passwd, kuyo siphawula kulayini womsebenzisi esidalile, bese sengeza entsha enjenge:
kira: x: 1003: 1003 :: / home / kira: / bin / bash
Ngamanye amagama, ifayili le-passwd belizobukeka kanjena:
impande: x: 0: 0: impande: / impande: / bin / bash
(1) #kira: x: 1003: 1003: ,,,: / opt / ijele /./ ikhaya / kira: / usr / sbin / jk_lsh
(2) kira: x: 1003: 1003 :: / home / kira: / bin / bash
Sawubona 🙂
Uma lokho kungasethiwe, ukufinyelela kwe-SSH akusebenzi, umsebenzisi uzama ukuxhuma kepha axoshwe ngokuzenzakalela ... kubonakala kuyisiphazamisi noma inkinga ngotolika olethwa yiJailKit, ngoba lapho kwenziwa lolu shintsho olubonisa ukuthi lisebenzisa i-bash ejwayelekile yohlelo, konke kuyasebenza .
Ngisavala iseshini ssh: C
I-Suse 10.1 x64
Sawubona ngikufakile lokhu futhi kusebenza kahle kakhulu engqondweni kuma-centos = D
kepha i-dua yami ifana neyedlule ukufaka imiyalo eminingi ngokwesibonelo kumsebenzisi wejele
ayikwazi ukusebenzisa umyalo we-svn co http://pagina.com/carpeta
Ngiqonde ukuthi, lo myalo awutholakali kubasebenzisi bejele kuleli cala njengakudala ukwengeza le miyalo ejele futhi kuningi okunye engidinga ukukungeza.
Sawubona Unjani?
Uma ufuna ukunika amandla umyalo othi «svn» Ejele unomyalo jk_cp
Leyo:
jk_cp / opt / ijele / / bin / svn
Lokhu kucabanga ukuthi i-svn kanambambili noma ephumelelayo yile: / bin / svn
Futhi i-Cage / Jail mayibe: / opt / ijele /
Uzothola imiyalo encike kwabanye, okungukuthi, uma ufaka umyalo othi «pepe» uzobona ukuthi kufanele futhi ungeze i- «federico», ngoba i- «pepe» incike ku- «federico» ezobulawa, uma uthola lokhu ngaleso sikhathi ungeza imiyalo edingekayo futhi vele u-😉
Kuhle lokho.
Inhlanhla 😀
Ngikwazile ukwenza lokhu ongitshele khona kodwa ngale ndlela futhi ngokuzenzakalela ikuthole ngaphandle kwenkinga.Lokhu bekungumyalo ebengikwazi ukuwukwenza ngokweqile.
jk_cp -j / ikhaya / jaul svn
Ngisebenzisa amasenti xP futhi mhlawumbe kwehlukile kepha kuhle
manje ngifisa ukwazi ukuthi yimiphi imitapo yolwazi efana ne-svn kepha manje ngithanda ukuhlanganisa ngoba ake sithi ngidinga ukusebenzisa umyalo onjengalona
./configure and mark mark
./configure.lineno: umugqa 434: expr: umyalo awutholakali
Ngangingeke ngazi ukuthi yimiphi imitapo yolwazi engivele ngiyifakile ukuthi yini i-mysql neminye uma ihlanganiswa ngaphandle kwejele kepha ingekho ngaphakathi kwejaui.
Ngiyaxolisa ngesiphazamiso.
ps: kufanele ubeke umhlahlandlela engikutshele wona ngomyalo osetshenziswe kuma-centos =) imikhonzo.
Bheka, lapho ngikutshela ukuthi ayikwazi ukuthola umyalo (njengalapha) into yokuqala ukuthola umyalo:
whereis expr
Uma sesitholakele (/ usr / bin / expr kanye / usr / bin / X11 / expr) siyikopisha eJele nge-jk_cp 😉
Zama lokhu ukubona.
Yebo, sengivele ngihlela okuthunyelwe futhi ngengeza ukuthi kusebenza kuCentos 😀
Ngiyabonga kakhulu (:
Siyabonga ngokufaka…
Sawubona Unjani?
Fuck mfowethu! Kusuka eChile imikhonzo yami. Usuka kude njengami! LOL !. Ukugona. Okuthunyelwe kwakho kube usizo olukhulu kimi!
Ngiyabonga ngokuphawula kwakho 😀
Ngiyabonga kakhulu ngokuthunyelwe, kwangisiza kakhulu, kodwa ngeshwa engxenyeni ye-
//////////////////////////////////////////////////////////// //// //////////////////////////////////////////////////////// //////// /////////////////////////
Kufanele sihlele ifayili njll / i-passwd yezinyoni, okungukuthi, kuleli cala kuzoba / opt / jail / etc / passwd, kuyo siphawula kulayini womsebenzisi esidalile, bese sengeza entsha enjenge:
kira: x: 1003: 1003 :: / home / kira: / bin / bash
Ngamanye amagama, ifayili le-passwd belizobukeka kanjena:
impande: x: 0: 0: impande: / impande: / bin / bash
#kira: x: 1003: 1003: ,,,: / opt / ijele /./ ikhaya / kira: / usr / sbin / jk_lsh
kira: x: 1003: 1003 :: / home / kira: / bin / bash
//////////////////////////////////////////////////////////////// ////////////////////////////////////////////////
Kungibangela iphutha elifanayo, ngiqonde ukuthi, ngiyishiya njengoba injalo, futhi iyangibopha esikhumulweni lapho ngixhuma ,,, .., ngiphawula kulayini bese ngifaka okunye ukukuguqula njengoba ukhombisa, futhi amabhuzu kimi….
Faka inguqulo yakamuva "i-jailkit-2.16.tar", futhi udale iskripthi sokonga isikhathi, nakhu ngezansi:
///////////////////////////////////////////////////////////////// /////////////////////////////////////////////////////
#! / bin / bash
wget http://olivier.sessink.nl/jailkit/jailkit-2.16.tar.gz
i-tar -zxvf ejele-2.16.tar.gz
cd ijelekit-2.16
./configure
ukwenza
yenza ukufaka
Phuma
//////////////////////////////////////////////////////////// //// /////////////////////////////////
Ngokusobala kuqala bangena ngokuthi "impande" ...
Ngingaxazulula kanjani iphutha mngani ????
Uxolo, sengivele ngiyitholile, ngenze iphutha mayelana nefolda yasekhaya, kepha nginokungabaza okukhulu, ngingakuthola kanjani ukungivumela ngisebenzise umyalo "wesikrini", ngizama ukuwusebenzisa (kumsebenzisi ovalelwe ikheji), kepha awusebenzi ... Okunye futhi ukuthi ,, ngingenza kanjani ukuthi lo msebenzisi ovalelwe ikhekhe aqhube uhlelo lwewayini kwi-exe asanda kuyifaka ngaphakathi kwendlu yakhe ,, kungaba njani?
sawubona, tuto omuhle kakhulu! Ngimusha kulezi zindawo, nginombuzo ...
Ngokuphepha, ngiyabona ukuthi empandeni yayo inamafolda amaningi, ingabe ayadingeka? Ngifuna nje ukuthi akwazi ukufinyelela kufolda yakhe (ftp-upload and ssh-execute) ukwenza uhlelo lokusebenza, imaphi amafolda angawasusa empandeni? noma ingabe ayimeleli ubungozi kimi? Ngiyalwazisa usizo lwakho kusengaphambili, imikhonzo!
@ KZKG ^ Gaara, ngenhlanhla ubeka iphutha le-wheezy kodwa ngenguqulo ye-jailkit-2.16.tar.gz ophakamise ukuthi bayilungise
http://olivier.sessink.nl/jailkit/jailkit-2.16.tar.gz
Ngicabanga ukuthi ngizoyidlulisela ku-PDF, jojo .. ukuya ehokweni nokubonga wn 😀
Sawubona mngani, nginombuzo:
Ake sithi sinomsebenzisi ogama lakhe lingu- "test".
Umbuzo uwukuthi, ifayela /home/test/.ssh/known_hosts elitholakala ekhaya lalo msebenzisi, ingabe liyifayela elifanayo noma alihlanganiswanga umsebenzisi?
Zama lokhu. Ngale ndlela ungakhawulela ukuzulazula uye kwelinye ikhaya labanye abasebenzisi.
Okokuqala, ngiyabonga ngokuthunyelwe! Kusetshenziswa kakhulu kimi; kepha nginokungabaza okubili, futhi lokhu kuvela kwisimo enginaso:
Ngidinga ukudala abasebenzisi be-N abanokufinyelela okuzimele nokuyimfihlo emakhaya abo, umsebenzisi ngamunye angafinyelela kuphela ekhaya lakhe ukuze afake, aguqule futhi asuse amafayela aqukethwe lapho ngaphandle kokuzulazula kwabanye (sengivele nginalo leli phuzu). Akudingi ukufinyelela nge-ssh.
1. Ngabe kufanele wakhe ikheji lomsebenzisi ngamunye, noma ngabe ikhona indlela yokuba nabasebenzisi abahlukahlukene esibayeni esisodwa kepha ngamunye abe nesiqondisi sabo "sangasese"?
2. Lapho ufinyelela (ngeklayenti le-FTP) zonke izinkomba ezenziwe yithuluzi ziyakhonjiswa, ingabe ikhona indlela yokukhombisa ifolda ngendlela ehlanzekile? Noma kukhona yini engikwenzile okungahambi kahle endleleni?
Isifundo esihle kakhulu! Kube wusizo olukhulu kimi, ngiyayihlola ngenguqulo 2.17 ku-Ubuntu 14.04 futhi isebenza kahle kakhulu. Manje senginenselele elandelayo, uma umsebenzisi efakwe esibayeni ukuze angakwazi ukuthuthela kunoma iyiphi indlela, ngifuna ukuthi akwazi ukubona okuqukethwe kwefayela elikolunye umkhondo. Ngizamile ngesixhumanisi esingokomfanekiso kepha lapho ngizama ukwenza umsila noma ikati kuleli fayela lingitshela ukuthi alikho yize lapho ngifinyelela nomsebenzisi ngingalibhala lelo fayela ekhaya lekheji.
Uma ungangisiza ngingajabula kakhulu, ngiyabonga kusengaphambili
Sawubona, ngiyilandele yonke imanyuwali futhi lapho ungena ngemvume nge-ssh ivala ngokuzenzakalela, ilandelela:
Dec 4 19:20:09 toby sshd [27701]: Iphasiwedi eyamukelwe yokuhlolwa kusuka ku-172.16.60.22 port 62009 ssh2
Dec 4 19:20:09 toby sshd [27701]: pam_unix (sshd: session): iseshini ivulelwe ukuhlolwa komsebenzisi ngu (uid = 0)
Dec 4 19:20:09 toby jk_chrootsh [27864]: manje kungena ejele / opt / ejele lokuhlolwa komsebenzisi (1004) ngezimpikiswano
Dec 4 19:20:09 toby sshd [27701]: pam_unix (sshd: session): iseshini ivaliwe ukuhlolwa komsebenzisi
Gracias
Hhayi lapho ngenza isinyathelo sokugcina sokunikeza ukufinyelela kwe-ssh kumsebenzisi, kusavala ukuxhumana 🙁
Kungenzeka yini ukuthi kulo msebenzisi owakhiwe aguquke abe yimpande? yakho -mpande yakho? ayingivumeli. Kungaba njani? Ngiyabonga ngosizo lwakho
Ngiyabonga kakhulu ngesifundo, bengisidinga ukudala umsebenzisi ongasebenzisa i-clonezilla ukwenza isithombe bese asikopishele kuseva yangaphandle kepha angakwazi ukugcwala nomaphi lapho ethanda khona
Kuhle! Bengizobe ngidinga ukwazi okuthile.
Kungenzeka yini ukungena njenge-ROOT usebenzisa i-FTP futhi ube nalezi zimvume, ukuyiphatha nge-FTP hhayi nge-SSH? Masithi njengokudala ukuxhumana, isitayela somhubhe noma into enjalo. Kwenziwa kanjani? Ilungiselela ifayela le-VSFTPD?
Ngibonga kakhulu!