|
在mdk8.1上安装了wu-ftpd-2.6.1-16,用普通用户登陆正常,打上ip,用户名,密码.顺利登入可以限定在用户目录下,
但有一个很奇怪的问题,同样用普通用户登陆,但初时只打上ip,不打上用户名和密码,选匿名登陆,它会弹出一窗囗,在窗囗上打上用户名,再打上密码,就会顺利登入,这本来也没问题,但用这方法登入后,居然可以登入其它目录,但我己经在ftpaccess加上了restricted-uid *,应是限定了用户目录了,究竟问题出在那里?请各位大哥帮忙指正,多谢!
以下是我的ftpaccess文件:
# This file controls the behavior of the wu-ftpd
# ftp server.
#
# If you're looking for a graphical frontend to
# editing it, try kwuftpd from the kdeadmin
# package.
# Don't allow system accounts to log in over ftp
deny-uid %-99 %65534-
deny-gid %-99 %65534-
allow-uid ftp
allow-gid ftp
# The ftpchroot group doesn't exist by default, this
# entry is just supplied as an example.
# To chroot a user, modify the line below or create
# the ftpchroot group and add the user to it.
#
# You will need to setup the required applications
# and libraries in the root directory (set using
# guest-root).
#
# Look at the anonftp package for the files you'll need.
guestgroup ftpchroot
# User classes...
class all real,guest,anonymous *
# Set this to your email address
email root@localhost
# Allow 5 mistyped passwords
loginfails 5
# Notify the users of README files at login and when
# changing to a different directory
readme README* login
readme README* cwd=*
# Messages displayed to the user
message /welcome.msg login
message .message cwd=*
# Allow on-the-fly compression and tarring
compress yes all
tar yes all
# Prevent anonymous users (and partially guest users)
# from executing dangerous commands
chmod yes guest,anonymous
delete no real,guest,anonymous
overwrite yes real,guest,anonymous
rename no real,guest,anonymous
# Turn on logging to /var/log/xferlog
log transfers anonymous,guest,real inbound,outbound
# If /etc/shutmsg exists, don't allow logins
# see ftpshut man page
shutdown /etc/shutmsg
# Ask users to use their email address as anonymous
# password
passwd-check rfc82 warn
restricted-uid * |
|