<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.0.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>vpsBible Forums &#187; Topic: Add new user who can only use SFTP?</title>
		<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp</link>
		<description>Setup Unmanaged VPS for Linux Noobs!</description>
		<language>en-US</language>
		<pubDate>Fri, 10 Feb 2012 03:46:04 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.0.2</generator>
		<textInput>
			<title><![CDATA[Search]]></title>
			<description><![CDATA[Search all topics from these forums.]]></description>
			<name>q</name>
			<link>http://vpsbible.com/forums/search.php</link>
		</textInput>
		<atom:link href="http://vpsbible.com/forums/rss/topic/add-new-user-who-can-only-use-sftp" rel="self" type="application/rss+xml" />

		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1569</link>
			<pubDate>Sun, 10 Oct 2010 09:57:42 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1569@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;possible issues Geoffrey:-&#60;/p&#62;
&#60;p&#62;- FZ user the same as dir owner&#60;br /&#62;
- .. perms shouldn't matter in this case (well, above 600 should be OK, else, say 660 to log in as other user)&#60;br /&#62;
- SSH setup with FZ, linking to key?&#60;/p&#62;
&#60;p&#62;the key can be fiddly .. I would setup new keys, test with terminal, then FZ.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1561</link>
			<pubDate>Fri, 08 Oct 2010 06:41:18 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1561@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Can anyone provide me with any leads ?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1487</link>
			<pubDate>Mon, 20 Sep 2010 08:32:44 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1487@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;I think it may have something to do with the ownership of the directories above the directory I am trying to get the new user jailed into. &#60;/p&#62;
&#60;p&#62;In following your tutorial for setting up the VPS, I have a public_html folder which is owned by the user I created in the tutorial. I am wanting to jail the user to a sites folder that is created inside the public_html folder. &#60;/p&#62;
&#60;p&#62;In short. I want the user to be able to ftp into the /home/public_html/theirsite.com/ folder. &#60;/p&#62;
&#60;p&#62;How can I do this with the setup I have followed through your other tuts thus far?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1481</link>
			<pubDate>Sun, 19 Sep 2010 15:18:08 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1481@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Hi Guv, Finally had a chance to look into this again. I am still having trouble logging in with sftp in filezilla after following your steps. I am getting &#34;Authentication Failed&#34; messages when trying to login with filezilla. The user exists. I have tried changing the password. I have double checked the filezilla configuration and it should be working but isn't. Any other ideas? I want to give them access to a portion of the public_html directory I created in your tutorials but &#34;jail&#34; them into a specific part of it.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1425</link>
			<pubDate>Fri, 03 Sep 2010 11:30:02 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1425@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;hey Andy .. I don't think the OS version is so relevant, but of course te version of OpenSSH is .. but a simple update &#38;amp;&#38;amp; upgrade would sort that ..&#60;/p&#62;
&#60;p&#62;what's the workaround?!
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Anonymous on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1424</link>
			<pubDate>Thu, 02 Sep 2010 20:40:49 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">1424@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Done some further reading around this and it seems like Ubuntu 8.04 LTS might not have the ability to do this. Are your instructions for 10.04 LTS Guv?&#60;/p&#62;
&#60;p&#62;Damn OpenSSH_4.7p1 is all that is in 8.04 LTS and there is no easy way to jail users but I have a basic workaround if anyone needs it.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Anonymous on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1423</link>
			<pubDate>Thu, 02 Sep 2010 19:17:26 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">1423@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Well I managed to undo the changes via root using the emergency console and am back in. If I work out the issue I will post back.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Anonymous on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1422</link>
			<pubDate>Thu, 02 Sep 2010 16:44:17 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">1422@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;I restarted the server and now can't get ANY SFTP access :(
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Anonymous on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1421</link>
			<pubDate>Thu, 02 Sep 2010 15:47:11 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">1421@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Hey all.&#60;/p&#62;
&#60;p&#62;I have only just got around to testing this and it looks like it is EXACTLY what I need but when trying to connect via a terminal using sftp &#60;a href=&#34;mailto:someguy@123.45.67.890&#34;&#62;someguy@123.45.67.890&#60;/a&#62; I am getting the same error as above:&#60;br /&#62;
&#60;code&#62;&#60;br /&#62;
Permission denied (publickey,password).&#60;br /&#62;
Couldn't read packet: Connection reset by peer&#60;br /&#62;
&#60;/code&#62;&#60;br /&#62;
Any ideas?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1344</link>
			<pubDate>Tue, 10 Aug 2010 21:01:42 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1344@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;hey Benja .. a second vps is always an added way to learn, sure.&#60;/p&#62;
&#60;p&#62;re scripts .. there are two variants for LEMP now, with and without the authentication keys.  The latter is for noobs worried about not getting the keys right, the former is being used to death by webmasters round here who wanna be lazy.&#60;/p&#62;
&#60;p&#62;Use the latter and you cannot get locked out.&#60;/p&#62;
&#60;p&#62;(Sorry m8 .. I know this is an old thread, ruddy crazy week.)
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Benja on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1310</link>
			<pubDate>Tue, 03 Aug 2010 22:17:22 +0000</pubDate>
			<dc:creator>Benja</dc:creator>
			<guid isPermaLink="false">1310@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;@the_guv,&#60;/p&#62;
&#60;p&#62;Thanks, many! Thing is i am still shying away from this stackscripts thingies! I tried them once and couldn't work stuff out with the CLI access. May be i should get another IP address or something. Have u any set-up on the same IP and accessed easily?&#60;/p&#62;
&#60;p&#62;Oh, other noob zombies need to have access to perform simple upgrades via WP dashboard and the like for domains set-up on a VPS.&#60;/p&#62;
&#60;p&#62;Cheers
&#60;/p&#62;</description>
		</item>
		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1282</link>
			<pubDate>Sun, 01 Aug 2010 18:05:27 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1282@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;hey Benja ..&#60;/p&#62;
&#60;p&#62;&#34;can't update any of the plugin and theme thingies&#34;&#60;/p&#62;
&#60;p&#62;check out the WP stackscripts .. there's a section in there called:-&#60;/p&#62;
&#60;p&#62;&#34;WP Upgrades and Plugin Installs Assistance&#34;&#60;/p&#62;
&#60;p&#62;.. that's your friend :)&#60;/p&#62;
&#60;p&#62;&#34;can i give some other noob limited backend (WP) access to the server.&#34;&#60;/p&#62;
&#60;p&#62;.. yes but tell me, to do what? advice varies depending on requirement.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Benja on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1253</link>
			<pubDate>Wed, 28 Jul 2010 23:49:26 +0000</pubDate>
			<dc:creator>Benja</dc:creator>
			<guid isPermaLink="false">1253@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;@the_guv,&#60;/p&#62;
&#60;p&#62;Somehow i guess i had too much beer to work out what this SFTP is quite about. Thing is when i get to my wordPress admin backend, i can't update any of the plugin and theme thingies i guess due to server access setting somewhere in the configurations. I just can't work out where that is for now.&#60;/p&#62;
&#60;p&#62;Secondly, in a fashion similar to above, can i give some other noob limited backend (WP) access to the server.&#60;/p&#62;
&#60;p&#62;Cheers for now.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1144</link>
			<pubDate>Thu, 15 Jul 2010 14:04:41 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1144@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;you definitely using SFTP settings in Filezilla?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1134</link>
			<pubDate>Tue, 13 Jul 2010 13:10:33 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1134@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;The latest on this though is a new problem. I am getting authentication issues with the new user and getting this message &#34;Permission denied (publickey,password).&#34; Is there some more I need to do to be able to use filezilla to be able to login as this user at the specified directory?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1133</link>
			<pubDate>Tue, 13 Jul 2010 13:06:45 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1133@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Sorry Guv. Spelling error was getting connection timeouts... &#34;Group&#34; is not the same as &#34;Groun&#34;
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Geoffrey Eggins on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1132</link>
			<pubDate>Tue, 13 Jul 2010 12:47:51 +0000</pubDate>
			<dc:creator>Geoffrey Eggins</dc:creator>
			<guid isPermaLink="false">1132@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Hi Guv,&#60;br /&#62;
I tried this and get connection timeout errors on my connection attempts to all my ftp accounts. Even the one I had working previously from following your tuts. Any ideas why?
&#60;/p&#62;</description>
		</item>
		<item>
			<title>the_guv on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1110</link>
			<pubDate>Fri, 02 Jul 2010 21:42:34 +0000</pubDate>
			<dc:creator>the_guv</dc:creator>
			<guid isPermaLink="false">1110@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;hey Andy .. best thing is to jail them with an openSSH tool.&#60;/p&#62;
&#60;p&#62;nano /etc/ssh/sshd_config&#60;/p&#62;
&#60;p&#62;.. Swap:-&#60;br /&#62;
&#34;Subsystem sftp /usr/lib/openssh/sftp-server&#34;&#60;/p&#62;
&#60;p&#62;for&#60;/p&#62;
&#60;p&#62;Subsystem sftp internal-sftp&#60;/p&#62;
&#60;p&#62;Add this to END of file:-&#60;/p&#62;
&#60;p&#62;Match group sftpgroup&#60;br /&#62;
         AllowTcpForwarding no&#60;br /&#62;
         ChrootDirectory /home/%u&#60;br /&#62;
         ForceCommand internal-sftp&#60;br /&#62;
         X11Forwarding no&#60;/p&#62;
&#60;p&#62;Save and close. &#60;/p&#62;
&#60;p&#62;Create the group &#34;sftpgroup&#34; &#60;/p&#62;
&#60;p&#62;groupadd sftpgroup&#60;/p&#62;
&#60;p&#62;Create your user, add to group and &#60;strong&#62;change ownership of user home dir to root&#60;/strong&#62;&#60;/p&#62;
&#60;p&#62;adduser somebloke&#60;br /&#62;
adduser somebloke sftpgroup&#60;br /&#62;
chown root:root /home/somebloke&#60;/p&#62;
&#60;p&#62;Now somebloke can in with an SFTP client of via a terminal using something like:-&#60;/p&#62;
&#60;p&#62;sftp -oPort=54321 &#60;a href=&#34;mailto:someguy@123.45.67.890&#34;&#62;someguy@123.45.67.890&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;.. where 54321 is your custom ssh port .. or drop &#34;-oPort=54321&#34; is port is 22&#60;/p&#62;
&#60;p&#62;# and there is you chrooty-tut for the day, Andy-chap :)
&#60;/p&#62;</description>
		</item>
		<item>
			<title>Anonymous on "Add new user who can only use SFTP?"</title>
			<link>http://vpsbible.com/forums/topic/add-new-user-who-can-only-use-sftp#post-1103</link>
			<pubDate>Fri, 02 Jul 2010 12:29:26 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">1103@http://vpsbible.com/forums/</guid>
			<description>&#60;p&#62;Hi all&#60;/p&#62;
&#60;p&#62;Can anyone give me some detailed instructions on how to add a new user and for them to be only use SFTP (not ssh) and only be allowed access (r+w) in a particular direcotry (public_html)?&#60;/p&#62;
&#60;p&#62;Am using Ubuntu and Nginx&#60;/p&#62;
&#60;p&#62;Thanks
&#60;/p&#62;</description>
		</item>

	</channel>
</rss>

