logo
¡¡ whois | dll-download | HandBook | ¹ØÓÚ±¾Õ¾ | ºǫ́¹ÜÀí  ¡¡
¡ô              
2008 Äê 5 ÔÂ
ÈÕ Ò» ¶þ Èý ËÄ Îå Áù
    123
45678910
11121314151617
18192021222324
25262728293031
ÉÏÔ MONTH ÏÂÔ¡¡¡¡ÉÏÒ»Äê YEAR ÏÂÒ»Äê

Óû§Ãû:
ÃÜ¡¡Âë:

¡¡Õ¾ÄÚËÑË÷
¡¡Í³¼ÆÐÅÏ¢
¹²ÓÐÎÄÕÂ: 647
¹²·ÃÎÊÊý: 9471994
½ñÈÕ·ÃÎÊ: 150
ÔÚÏßÈËÊý: 1
¡¡×îÐÂÎÄÕÂ
¡¡½ñÌ죬ÎÒ³´¹ÉÁË
¡¡RedHat AS4 ÕûºÏMyS...
¡¡windows server 200...
¡¡Ê¹ÓÃfind²éÕÒÎļþµÄ...
¡¡Linux Ö¸Áî¼òµ¥½«¹¥...
¡¡LinuxÏÂÅäÖÃÍêÕû°²È...
¡¡¹ØÓÚÎÞ×é¼þÉÏ´«µÄAD...
¡¡ÓÖһƪviϸ½âÎÄÕÂ
¡¡viÌæ»»ÃüÁîÓ÷¨Ïê½â
¡¡squid-2.6.STABLE1Ö...
¡¡Áã³É±¾ LinuxÏÂÇáËÉ...
¡¡squidÓÖһƪÏêϸÅäÖ...
¡¡as4 ͨ¹ýyum×Ô¶¯Éý¼...
¡¡È«¹ú¸÷µØÍøÍ¨DNS
¡¡squidÓ¦ÓÃÏê½â
¡¡mysql³£ÓÃÃüÁî
¡¡ÐÞ¸´ Table 'xxx' i...
¡¡MYSQLÐÔÄÜÓÅ»¯ÉèÖÃ
¡¡Clamav + Amavisd-n...
¡¡amavisd-newÔÚ¸øÓʼ...
¡¡×îÐÂÆÀÂÛ
¡¡Best views O_O Mov...
¡¡µû·§¹«Ë¾£¬¹«Ë¾-Éó...
¡¡Congratulations!!!...
¡¡Good day... Moving...
¡¡ÉϺ£,Öܱßsnooker b...
¡¡Hi ^_^ Great .Now ...
¡¡Congratulations. C...
¡¡Hi there! Good wor...
¡¡Good day! Nice sit...
¡¡Hi 8-) Palatable w...
¡¡Ò×ͨ±¨¼Û£¬gate val...
¡¡Hi there - Thanks ...
¡¡°üÀ¨¹«ÒæÍøÌṩרҵ...
¡¡Hi all :))) The be...
¡¡Hello ^_^ Palatabl...
¡¡»¶Ó­·ÃÎÊ£¬
¡¡»¶Ó­·ÃÎÊ£¬
¡¡»¶Ó­·ÃÎÊ£¬
¡¡»¶Ó­·ÃÎÊ£¬
¡¡»¶Ó­·ÃÎÊ£¬
¡¡×îÐÂÒýÓÃ
¡¡×î½üÎÞÒýÓÃÄÚÈÝ
¡¡ÓÑÇéÁ´½Ó
-¡¡Ä¿Ç°ÎÞÓÑÇéÁ´½Ó (0)
¡¡ÎÄÕ¾ۺÏ
RSS View v:1.0 RSS View v:2.0
ATOM View v:0.3 channel
×î½ü 10 ÌõÆÀÂÛ RSS View Powered by Blog
Creative Commons DeCode: GB2312
PHP MySQL
¡¡[Õ¾³¤½éÉÜ]
Õ¾³¤£º Glen
ÐÅÏ䣺 root@domsn.net
http://wwww.domsn.net

One Step Ahead
SSHÔÚÍøÂ簲ȫÖеÄÓ¦Óà    2006-09-27 23:23:38

SSHÔÚÍøÂ簲ȫÖеÄÓ¦ÓÃ
ÂíÓñ¾ü ÍõÓñÀÚ ÀîÏþÑå
£¨ÄÏÑôÀí¹¤Ñ§ÔºÍøÂçÖÐÐÄ£¬ ºÓÄÏ ÄÏÑô 473004£©
Ò»£®ÎªÊ²Ã´ÍøÂçÖÐ»á´æÔÚ°²È«ÎÊÌâ
ÔÚ»¥ÁªÍøÂç·ÉËÙ·¢Õ¹µÄ½ñÌì£¬ÍøÂ簲ȫÒѳÉΪÈËÃÇÌÖÂÛÔ½À´Ô½¶àµÄÒ»¸ö»°Ìâ¡£ÄÇô£¬¾¿¾¹ÎÒÃǵÄÍøÂçÎÊʲô»á²»°²È«ÄØ£¿ÕâÆäÖÐÓÐÒ»¸öÖØÒªµÄÀúÊ·Ô­Òò£ºÎÒÃǶ¼ÖªµÀ£¬»¥ÁªÍøµÄͨÐÅ»ù´¡ÊÇTCP/IPЭÒ飬ÔÚÕû¸ö»¥ÁªÍøµÄ·¢Õ¹ºÍÆÕ¼°ÖУ¬TCP/IPÆðµ½ÁËÖÁ¹ØÖØÒªµÄ×÷Óã¬ËüÒѳÉΪÊÂʵÉϵĹ¤Òµ±ê×¼£¬¿ÉÒÔ˵Èç¹ûûÓÐTCP/IP¾ÍûÓнñÌìÅ·¢Õ¹µÄ»¥ÁªÍø¡£µ«ÊÇ£¬ÓÉÓÚÔÚTCP/IPµÄÉè¼ÆÖ®³õ£¬Ã»Óп¼Âǵ½ÍøÂ簲ȫÎÊÌ⣬¶ø¿¼ÂǸü¶àµÄÊÇÔõÑù¸üºÃµÄÍê³ÉÐÅÏ¢´«µÝ¹¤×÷£¬ÕýÊÇÓÉÓÚTCP/IPµÄÉè¼ÆÈ±Ïݵ¼ÖÂÁ˺ܶలȫÎÊÌâ¡£µ«ÊÇ£¬TCP/IPÒѾ­³ÉΪÊÂʵÉϵĹ¤Òµ±ê×¼£¬¶øÇÒÒѾ­µÃµ½¹ã·ºµÄÓ¦Óã¬ÒªÏëÖ±½ÓÐÞ¸ÄTCP/IPЭÒéÀ´ÔöÇ¿°²È«ÐÔÊDz»Ì«ÏÖʵµÄ¡£ËùÒÔ£¬ÎªÁËÔÚÏÖÓÐÍøÂç»ù´¡ÉÏʵÏÖÍøÂçµÄ°²È«£¬Éè¼ÆÁËÐí¶à»ùÓÚTCP/IPµÄ°²È«Ð­ÒéÀ´±£»¤ÍøÂçͨÐÅ¡£ÆäÖеÄһЩ°²È«Ð­ÒéÒѾ­µÃµ½Á˹㷺ӦÓᣱ¾ÎÄÒªÌÖÂÛµÄSSH¾ÍÊÇÒ»ÖÖÒѾ­µÃµ½¹ã·ºÓ¦Óõİ²È«Ð­Ò飬µ±Ç°×îа汾Ϊ2¡£
¶þ£®SSHµÄÀúÊ·¼°ÆäÏÖ×´
ͨ³£ÍøÂç¹ÜÀíԱΪÁËʵÏÖÔ¶³Ì¹ÜÀí·þÎñÆ÷£¬Ò»°ã¶¼Ê¹ÓÃÒ»ÖÖ½Ð×÷telnetµÄ¹¤¾ß½øÐÐÔ¶³ÌµÇ¼µ½·þÎñÆ÷ÉÏÖ´ÐÐÏà¹ØµÄ¹ÜÀíÈÎÎñ£¬ÕâÖÖ¹ÜÀí·½Ê½ÐèÒª½èÖúÓÚTCP/IPÍøÂç½øÐУ¬ÔÚÊÀ½ç¸÷µØµÄÈκεط½£¬Ö»ÒªÖ÷»úÁªÈ뻥ÁªÍø£¬¾Í¿ÉÒÔÇáËɵÄÔ¶³Ì¹ÜÀí·þÎñÆ÷£¬ÕâÖÖ·½Ê½¸øÎÞÊý¹ÜÀíÔ±´øÀ´ÁË·½±ã¡£µ«ÊÇ£¬ÔÚʹÓÃtelnetµÄ¹ý³ÌÖÐÒ²´æÔÚÒ»ÖÖÖÂÃüµÄÈõµã£¬¼´£ºÔÚ½øÐÐÉí·ÝÈÏ֤ʱ£¬ËüʹÓõÄÊÇÃ÷ÎÄÔÚ»¥ÁªÍøÂçÉÏ´«Ê䣬ÕâÊÇÒ»ÖÖDZÔڵݲȫÒþ»¼¡£¿ÉÒÔ¼ÙÏ룬ÔÚÍøÂçÉÏ£¬Èç¹ûÓÐijһ̨Ö÷»ú¼àÌýËùÓеÄÊý¾Ý°ü£¨Ò»°ãÇé¿öÏ£¬Ö÷»úÖ»½ÓÊÕ·¢Ë͸ø×Ô¼ºµÄÊý¾Ý°ü£¬¶ø²»ÊÇ·¢Ë͸ø×Ô¼ºµÄÔò¶ªÆú£¬µ«¿ÉÒÔ°ÑÍøÂç½Ó¿Ú¿¨ÉèÖÃΪ»ìÔÓģʽ£¬Íø¿¨µÄÕâÖÖ¹æÄ£Ê½Ê¹Ö÷»ú½ÓÊÕµ½´ïÖ÷»úµÄÈκÎÊý¾Ý°ü£¬°üÀ¨²»ÊÇ·¢Ë͸ø×Ô¼ºµÄÊý¾Ý°ü£©£¬ÄÇôÎÒÃÇÔÚÍøÂçÉÏ´«Ë͵ÄһЩÃô¸ÐÐÅÏ¢£¨È磺Óû§ÃûºÍÃÜÂ룩¶¼¿ÉÄܱ»ÇÔÌýµ½£¬¶øÇÒͨ¹ýÏàÓ¦µÄÈí¼þ»¹¿ÉÄܱ»×ª»»³ÉÃ÷ÎÄ¡£ËùÒÔ£¬ÔÚÍøÂçÖÐʹÓÃtelnetÊǷdz£²»°²È«µÄ¡£ÕýÊÇÓÉÓÚÕâÖÖ°²È«ÎÊÌ⣬²Åµ®ÉúÁËSSH¡ª¡ªÒ»ÖÖ´úÌætelnetµÄÔ¶³Ì°²È«¹ÜÀí¹¤¾ß¡£
SSH×î³õÊÇÓɳÌÐòÔ±Tatu Yloenen¿ª·¢£¬°üÀ¨SSHЭÒéºÍ·þÎñÈí¼þ£¬Ó¢ÎÄÈ«³ÆÎªSecure Shell£¨¼´°²È«Íâ¿Ç£©¡£ËüʵÏÖÁËÃÜÔ¿½»»»Ð­ÒéÒÔ¼°Ö÷»ú¼°¿Í»§¶ËÈÏ֤ЭÒ飬ÔÚ´«ËÍÊý¾Ýʱ°ÑËùÓÐÊý¾Ý¶¼¼ÓÃÜ´«Ê䣬ÔÚ½ÓÊÕ·½ÔÙ½øÐнâÃÜ£¬ÒÔ·ÀÖ¹ÍøÂçÇÔÌýµÄ·¢Éú¡£SSH×î³õÔÊÐí×ÔÓɵÄʹÓ㬵«ÊÇYlonen×÷ΪSSH Communications Security¹«Ë¾µÄ´´Ê¼ÈË£¬×îÖÕ½«ÆäÉÌÒµ»¯£¬Èç¹û×÷ΪÉÌÒµ»¯µÄÓ¦ÓñØÐ븶·Ñ£¬Èô·ÇÉÌÒµ»¯»¹¿É×ÔÓÉʹÓá£ÕâÒ²¾Íµ¼ÖÂÁËOpenSSHµÄµ®Éú£¬ËüÊÇSSHµÄÍêÈ«Ãâ·ÑµÄʵÏÖ¡£ÏÖÔÚÔÚ¾ø´ó¶àÊýµÄLinux°æ±¾Öж¼Ä¬ÈϵݲװÁËOpenSSHÈí¼þ£¨°üÀ¨·þÎñÆ÷¶ËºÍ¿Í»§¶ËÈí¼þ£©¡£
SSHÒѾ­ÓÐÁ˺ܶàÉÌÆ·»¯°æ±¾£¬¶øÇÒ»¹ÓжàÖÖUNIX/Linuxϵͳƽ̨ÉϵÄÃâ·Ñ°æ±¾¡£±¾ÎĽ«Ö÷ÒªÒÔLinux²Ù×÷ϵͳ£¨µ±½ñ×îΪÁ÷ÐеÄÍøÂç²Ù×÷ϵͳ֮һ£¬¶øÇÒ¹«¿ªÔ´´úÂ룩Ϊ·þÎñÆ÷£¨ÔÚÆäËüµÄUNIX»òUNIXµÄÅÉÉú²Ù×÷ϵͳÉϵIJÙ×÷Ò²Ò»Ñù£©£¬windows²Ù×÷ϵͳΪ¿Í»§¶Ë½éÉÜÃâ·ÑµÄÉÌÒµSSH°æ±¾µÄ°²×°¼°ÆäʵÏÖ¡£ÆäÖØµãÊÇLinux·þÎñÆ÷µÄÅäÖá£
Èý£®SSHÔÚLinuxÉϵݲװºÍʵ¼ÊÓ¦ÓÃ
1£®Èí¼þµÄ»ñµÃ
Èí¼þµÄ»ñµÃ¿É´Óhttp://www.openssh.orgÏÂÔØOpenSSH£¬µ±Ç°×îа汾Ϊ3.6.1£¬»òÕß´Óhttp://www.ssh.com/ ÏÂÔØÕë¶ÔLinuxµÄ·ÇÉÌÒµ°æ±¾£¬µ±Ç°×îа汾Ϊ3.2£¬¾ßÌåµØÖ·Îª£º
SSH·þÎñÆ÷µØÖ·£ºhttp://www.ssh.com/support/downloads/secureshellserver/non-commercial.html
SSH¿Í»§¶ËµØÖ·£ºhttp://www.ssh.com/support/downloads/secureshellwks/non-commercial.html£¨ÕâÊÇÒ»¸öFor Windows°æ±¾£©¡£²»¹ÜÊÇOpenSSh»¹ÊÇSSH Communications Security¹«Ë¾µÄSSH°æ±¾£¬¶¼¿ÉÒÔʹÓù¦ÄÜ»ù±¾ÉÏÒ»Ñù£¬Ö»ÊÇǰÕßÍêÈ«Ãâ·Ñ£¬¶øºóÕßʹÓÃʱҪעÒâÐí¿ÉЭÒé¡£ÔÚʹÓýǶÈÉϿɿ¼ÂÇ£¬±ÊÕßÈÏΪºóÕ߸üºÃÓÃһЩ¡£±¾ÎÄ×ÅÖØ½éÉܺóÕߵݲװºÍʹÓá£
2£®°²×°
´ÓSSH Communications Security¹«Ë¾ÏÂÔØµÄSSH·þÎñÆ÷ÊÇÔ´´úÂ뷽ʽ£¬ÎļþÃûΪssh-3.2.3.tar.gz£¬±ØÐë¶ÔÆä½øÐбàÒëºÍ°²×°Ö®ºó²ÅÄܹ»Ê¹Óã¬Õâ¾ÍÒªÇóÄúµÄLinuxϵͳÖбØÐë°üº¬ÓÐÒ»ÖÖCÓïÑÔ±àÒëÆ÷£¬È磺cc»ògcc¡£
ÎÒÃǼÙÉèÈí¼þµÄÏÂÔØÄ¿Â¼ÎªrootÓû§µÄËÞÖ÷Ŀ¼£¬¼´¡±/root¡±Ä¿Â¼¡£
£¨1£©ÓÃÒÔÏÂÃüÁî½øÐнâѹËõ½â°ü²Ù×÷(бÌå¼ÓÒõÓ°µÄΪ´Ó¼üÅÌÊäÈëµÄÄÚÈÝ)£º
[root@localhost root]# tar zxvf ssh-3.2.3.tar.gz
½âѹËõÍê³Éºó»áÉú³ÉÒ»¸ö¡±ssh-3.2.3¡±µÄÔ´´úÂëĿ¼¡£
£¨2£©Çл»µ½Ô´´úÂë´úÂëĿ¼£¬½øÐÐÈí¼þ°²×°Ç°µÄÅäÖ㬱àÒëºÍ°²×°£¬ÃüÁîΪ£º
[root@localhost root]# cd ssh-3.2.3
[root@localhost ssh-3.2.3]# ./configure - -prefix=/usr/local/ssh3.2.3 - -enable-static
[root@localhost ssh-3.2.3]# make
[root@localhost ssh-3.2.3]# make install
°²×°³É¹¦ºó£¬ÔÚ/etc/Ŀ¼Ï»áÔö¼ÓÒ»¸össh2Ŀ¼£¬Õâ¸öĿ¼ÊÇÓÃÀ´´æ·ÅSSH·þÎñÆ÷µÄËùÓÐÅäÖÃÎļþ£»ÔÚ¡±/usr/local/¡±Ä¿Â¼Ï»áÉú³É¡±ssh3.2.3¡±×ÓĿ¼£¬ËüÊÇSSH³ÌÐòÎļþºÍÆäËüÎļþµÄ´æ·ÅλÖá£
3£®»ù±¾ÅäÖúÍÓ¦ÓÃ
ÒªÏëÆô¶¯SSH·þÎñÆ÷Ö»ÐèÒªÔÚLinux·þÎñÆ÷Éϼòµ¥µÄÖ´ÐÐÏÂÃæÒ»ÌõÃüÁ
[root@localhost ssh-3.2.3]# /usr/local/ssh3.2.3/sbin/sshd &
µ«ÊÇ£¬Ã¿´ÎÖØÐÂÆô¶¯ÏµÍ³ºó¶¼ÒªÖظ´ÉÏÊö²Ù×÷²ÅÄÜÆô¶¯SSH·þÎñÆ÷£¬ÎªÁËʹ±£Ö¤SSH·þÎñÆ÷ÿ´Î¿ª»úʱ×Ô¶¯Æô¶¯£¬»¹ÒªÔÚ¡±/etc/rc.d/rc.local¡±Îļþ£¨´ËÎļþÀàËÆÓÚDOSϵÄautoexec.batÎļþ£¬Ã¿´ÎÆô¶¯ÏµÍ³ºó¶¼ÒªÖ´ÐÐÆäÖеÄÃüÁµÄ×îºó¼ÓÈëÒÔÏÂÄÚÈÝ£º
#start ssh3.2
/usr/local/ssh2/sbin/sshd &
ÆäÖеÚÒ»ÐÐΪעÊÍÄÚÈÝ£¬µÚ¶þÐÐΪÆô¶¯SSH·þÎñÆ÷²¢×÷ΪºóÌ¨ÊØ»¤½ø³ÌÔËÐС£
½ÓÏÂÀ´Òª×öµÄÊÇÅäÖÃSSH·þÎñÆ÷£¬ËùÓеÄÅäÖö¼ÊÇͨ¹ýÐ޸ġ±/etc/ssh2/sshd2_config¡±ÎļþʵÏֵġ£ÎļþµÄĬÈÏÅäÖÃÒѾ­ÄÜÂú×ãÒ»°ãµÄÒªÇó¡£ÏÂÃæ½éÉܼ¸ÖֱȽϳ£¼ûµÄÓ¦Óãº
£¨1£©Ê¹³¬¼¶Óû§rootÄܹ»Ö±½ÓµÇ¼·þ£¨2£©ÎñÆ÷
ʹÓÃtelnetʱrootÓû§Ä¬ÈÏÇé¿öϲ»ÄÜÖ±½Ó´ÓÔ¶³ÌµÇ¼ϵͳ£¨³ý·ÇÔÚÎļþ¡±/etc/securetty¡±ÖмÓÈëÍøÂçÖÕ¶Ë£©¡£Ò»°ãÒªÏÈÒÔÆÕͨÓû§µÇ¼£¬È»ºó£¬Ê¹ÓÃsuÇл»µ½rootÉí·Ý£¬ÕâÒ²ÊdzöÓÚ°²È«ÐԵĿ¼ÂÇ¡£ÓÉÓÚSSHʹÓÃÁ˼ÓÃÜ·½Ê½´«ÊäÊý¾Ý£¬ËùÒÔ¿ÉÒÔ·ÅÐĵÄÖ±½ÓʹÓÃrootµÇ¼·þÎñÆ÷£¬ÄÇôÎÒÃÇÐèÒª½«sshd2_configÎļþÖеģº
# PermitRootLogin yes
È¡Ïû×¢ÊÍ£¬¼´¸ÄΪ£º
PermitRootLogin yes
È»ºó£¬ÖØÐÂÆô¶¯SSH·þÎñÆ÷£¬¼´¿Éͨ¹ýSSHÒÔrootÉí·ÝµÇ¼Linux·þÎñÆ÷¡£µ±È»£¬Èç¹ûÄúÒª½ûÖ¹³¬¼¶Óû§µÇ¼µÄ»°£¬¿É½«¡±yes¡±¸ÃΪ¡±no¡±¼´¿É¡£
£¨3£©ÈçºÎÔÊÐí»ò½ûֹijЩÓû§»ò×éÓû§Ê¹ÓÃSSHµÇ¼
ҪʵÏÖ½ûÖ¹Óû§»ò×éʹÓÃSSHµÇ¼·þÎñÆ÷£¬Ö»ÐèÒªÐÞ¸Ässhd2_configÎļþÖеÄÒÔϼ¸ÐÐÄÚÈÝ£º
# AllowUsers sj.*,s[[:digit:]]*,s(jl©¦amza)
# DenyUsers skuuppa,warezdude,31373
# DenyUsers don@untrusted\.org
# AllowGroups staff,users
# DenyGroups guest,anonymous
¿ÉÒÔ¸ù¾Ý×Ô¼ºµÄʵ¼ÊÐèÒª£¬È¡Ïû×¢ÊÓ·û¡±#¡±£¬¼ÓÈëʵ¼ÊµÄÓû§Ãû»òÕß×éÃû£¬È»ºóÖØÐÂÆô¶¯SSH·þÎñÆ÷¼´¿É½ûÖ¹£¨»òÔÊÐí£©Ä³Ð©Óû§»òÕß×éʹÓÃSSH£¬¾ßÌå²Ù×÷ÕâÀï²»ÔÚÏéÊö¡£
£¨4£©Ê¹ÓÃSFTP£¨Secure FTP£©´úÌæftp´«ÊäÎļþ
FTP(Îļþ´«ÊäЭÒé)ÊÇÒ»ÖÖʹÓ÷dz£¹ã·ºµÄÔÚÍøÂçÖд«ÊäÎļþµÄ·½Ê½£¬µ«ÊÇ£¬ËüҲͬÑù´æÔÚ±»ÍøÂçÇÔÌýµÄΣÏÕ£¬ÒòΪ£¬ËüÒ²ÊÇÒÔÃ÷ÎÄ´«ËÍÓû§ÈÏÖ¤ÐÅÏ¢¡£ÆäʵÔÚSSHÈí¼þ°üÖУ¬ÒѾ­°üº¬ÁËÒ»¸ö½Ð×÷SFTP(Secure FTP)µÄ°²È«Îļþ´«Êä×Óϵͳ£¬SFTP±¾ÉíûÓе¥¶ÀµÄÊØ»¤½ø³Ì£¬Ëü±ØÐëʹÓÃsshdÊØ»¤½ø³Ì£¨¶Ë¿ÚºÅĬÈÏÊÇ22£©À´Íê³ÉÏàÓ¦µÄÁ¬½Ó²Ù×÷£¬ËùÒÔ´ÓijÖÖÒâÒåÉÏÀ´Ëµ£¬SFTP²¢²»ÏñÒ»¸ö·þÎñÆ÷³ÌÐò£¬¶ø¸üÏñÊÇÒ»¸ö¿Í»§¶Ë³ÌÐò¡£SFTPͬÑùÊÇʹÓüÓÃÜ´«ÊäÈÏÖ¤ÐÅÏ¢ºÍ´«ÊäµÄÊý¾Ý£¬ËùÒÔ£¬Ê¹ÓÃSFTPÊǷdz£°²È«µÄ¡£µ«ÊÇ£¬ÓÉÓÚÕâÖÖ´«Ê䷽ʽʹÓÃÁ˼ÓÃÜ/½âÃܼ¼Êõ£¬ËùÒÔ´«ÊäЧÂÊ±ÈÆÕͨµÄFTPÒªµÍµÃ¶à£¬Èç¹ûÄú¶ÔÍøÂ簲ȫÐÔÒªÇó¸ü¸ßʱ£¬¿ÉÒÔʹÓÃSFTP´úÌæFTP¡£ÈôÒª¿ªÆôSFTP¹¦ÄÜ¿ÉÒÔÐ޸ġ±sshd2_config¡±ÎļþµÄÏÂÁÐÄÚÈÝ£º
# subsystem-sftp sftp-server
È¥µôÐÐÊ׵ġ±#¡±£¬È»ºóÖØÐÂÆô¶¯SSH·þÎñÆ÷£¬ÕâÑùÔÚ½øÐÐSSHÁ¬½Óʱ¿ÉͬʱʹÓÃSFTP´«ÊäÎļþ¡£
£¨5£©¹ØÓÚ¿Í»§¶ËÉèÖÃ
ÒÔÉÏÊǶԷþÎñÆ÷µÄÉèÖã¬ÆäʵÔÚSSH·þÎñÆ÷ÖÐÒѾ­°üº¬ÁËһЩ¿Í»§¶Ë¹¤¾ß£¨±ÈÈ磺ssh,sftp¹¤¾ß£©¡£µ«ÊÇ£¬¸ü¶àµÄ¿Í»§¶ËÓû§Ê¹ÓÃwindowsϵͳ£¬ÏÂÃæ¾Í¶ÔwindowsÉϵĿͻ§¶ËϵͳÉèÖüÓÒÔ˵Ã÷¡£
Ê×ÏÈ´ÓÉÏÎĸø³öµÄÍøÖ·ÏÂÔØ¡±SSHSecureShellClient-3.2.3.exe¡±²¢°²×°£¬°²×°Íê³Éºó£¬ÔÚ×ÀÃæÉÏ»á²ú³ÉÁ½¸ö¿ì½Ý·½Ê½£¬Ò»¸öÊÇ¡±SSH Secure Shell Client¡±ÓÃÓÚÔ¶³Ì¹ÜÀí£¬ÁíÒ»¸öÊÇ¡±SSH Secure File Transfer Client¡±ÓÃÓںͷþÎñÆ÷½øÐÐÎļþ´«Ê䣬ÔÚ¹¤¾ßÀ¸Öеã»÷¡±quick connnect¡±£¬ÊäÈëÕýÈ·µÄÖ÷»úÃûºÍÓû§Ãû£¬È»ºóÔÚµ¯³öµÄ¶Ô»°¿òÖÐÊäÈëÃÜÂëÍê³ÉµÇ¼£¬¼´¿É¿ªÊ¼Ö´ÐÐÃüÁî»òÕß´«ÊäÎļþ¡£ÔÚʹÓÃSFTPʱĬÈÏÖ»ÄÜÏÔʾÓû§µÄËÞÖ÷Ŀ¼µÄÄÚÈݺͷÇÒþ²ØÎļþ¡£µ«ÊÇ£¬ÓÐʱºòÄú¿ÉÄÜ»¹Òª²é¿´ÆäËûĿ¼»òÕßÒþ²ØÎļþ£¬ÕâʱֻÐèÒªÔڲ˵¥¡±eidt¨¤setting¨¤file transfer¡±µÄÑ¡ÏîÖÐÑ¡ÖС±show root directory¡±ºÍ¡±show hidden file¡±Á½¸öÑ¡Ïî¼´¿É¡£
£¨6£©Ê¹ÆÕͨÓû§½öʹÓÃSFTP¶ø£¨7£©Ã»ÓÐʹÓÃShellµÄȨÏÞ
ĬÈÏÇé¿öϹÜÀíÔ±¸øÏµÍ³Ìí¼ÓµÄÕ˺Ž«Í¬Ê±¾ßÓÐSFTPºÍSSHµÄȨÏÞ¡£LinuxËäÈ»ÊÇÒ»¸ö·Ç³£°²È«µÄϵͳ£¬µ«ÊÇ£¬Èç¹ûÈÃÆÕͨÓû§Ê¹ÓÃshellÖ´ÐÐÃüÁîÒ²ÊÇÓкܴóµÄ°²È«Òþ»¼µÄ£¬Èç¹ûÄܹ»½ûÖ¹Óû§Ê¹ÓÃshellÖ´ÐÐÃüÁî¶ø½öʹÓÃSFTP´«ÊäÎļþ£¬¾ÍÄÜÏû³ýÕâÖÖ°²È«Òþ»¼£¬ÍêÈ«µÄʵÏÖftpµÄ¹¦ÄÜ£¬ÏÂÃæ¾ÍÀ´ÌÖÂÛÕâÒ»ÎÊÌâ¡£
ÕýÈçÉÏÎÄËùÊö£¬SFTPûÓе¥¶ÀµÄÊØ»¤½ø³Ì£¬Ö»ÄܽèÖúÓÚsshdÊØ»¤½ø³Ì£¬ËùÒÔÎÒÃÇÈÔÈ»ÐèҪʹÓÃSSH·þÎñÆ÷£¬Òª±£Ö¤sshdÊØ»¤½ø³Ì´¦ÓÚÔËÐÐ״̬¡£¾ßÌåʵÏÖ·½·¨ÈçÏ£º
Ê×ÏÈ£¬ÔÚ±àÒ밲װʱ£¬±àÒëÖÐÒ»¶¨ÒªÓС±--enable-static¡± Ñ¡Ï°²×°³É¹¦ºó£¬ÔÚ°²×°Ä¿Â¼ÏµÄbinĿ¼ÖÐÖ´ÐÐÏÂÃæµÄÃüÁ
[root@localhost bin]# ls -l ssh-dummy-shell* sftp-server2*
½«¿´µ½ÏÂÁÐÊä³öÄÚÈÝ£º
-rwxr-xr-x 1 root root 1350417 Apr 28 16:30 sftp-server2
-rwxr-xr-x 1 root root 3566890 Apr 28 16:30 sftp-server2.static
-rwxr-xr-x 1 root root 72388 Apr 28 16:30 ssh-dummy-shell
-rwxr-xr-x 1 root root 1813412 Apr 28 16:30 ssh-dummy-shell.static
ÆäÖдø¡±static¡±ºó׺Ãû£¬ÇұȽϴóµÄÁ½¸öÎļþ¾ÍÊǼÓÉÏ¡±--enable-static¡±Ñ¡ÏîºóÉú³ÉµÄ£¬ºóÃæÎÒÃǽ«Óõ½ÕâÀïÁ½¸öÎļþ¡£
ÏÂÃæÒÔÔÚϵͳÖÐÌí¼ÓÆÕͨÕ˺ÅtestΪÀý½²Êö¾ßÌå²Ù×÷²½Öè¡£
1£®ÔÚ/homeĿ¼£¨»òÕß½«Òª´æ·ÅÆÕͨÓû§ËÞÖ÷Ŀ¼µÄĿ¼£©Ï´´½¨bin×ÓĿ¼£¬²¢½«Á½¸östaticÎļþ¸´ÖƵ½´ËĿ¼Ï£¨¸´Öƺó¸ÄÃûÈ¥µôstaticºó׺£©£¬Ö´ÐÐÈçÏÂÃüÁ
[root@localhost bin]# cd /usr/local/ssh3.2/bin
[root@localhost bin]#cp ssh-dummy-shell.static /home/bin/ssh-dummy-shell
[root@localhost bin]# cp sftp-server2.static /home/bin/sftp-server
[root@localhost bin]#chown -R root.root /home/bin
[root@localhost bin]#chmod -R 755 /home/bin
2£®Ìí¼ÓÒ»¸ö×飬ʹÒÔºóµÄËùÓнûֹʹÓÃshellµÄÓû§¶¼ÊôÓÚÕâ¸ö×飬ÕâÑù±ãÓÚ¹ÜÀí¸ü¶àµÄÓû§£º
[root@localhost bin]#groupadd template
3£®ÔÚÌí¼ÓϵͳÕ˺ÅʱʹÓÃÈçÏÂÃüÁ
[root@localhost root]#useradd -s /bin/ssh-dummy-shell -g template test
[root@localhost root]#passwd test
[root@localhost root]#mkdir /home/test/bin
[root@localhost root]#cd /home/test/bin
[root@localhost bin]#ln /home/bin/ssh-dummy-shell ssh-dummy-shell
[root@localhost bin]#ln /home/bin/sftp-server sftp-server
[root@localhost bin]#chown -R root.root /home/test/bin
[root@localhost bin]#chmod -R 755 /home/test/bin
3£®Óû§Ìí¼Ó³É¹¦ºó£¬»¹ÐèÒªÐÞ¸Ä/etc/ssh2/sshd2_configÎļþ£¬½«ÏÂÁÐÄÚÈÝ£º
# ChRootGroups sftp,guest
¸ÄΪ£º
ChRootGroups sftp,guest,template
ÐÞ¸ÄÉÏÃæÕâÐÐÄÚÈÝ£¬Ö÷ÒªÊÇΪÁ˽ûÖ¹ÆÕͨÓû§²é¿´ÏµÍ³µÄÆäËüĿ¼£¬¶ø°ÑÆäȨÏÞÏÞÖÆÔÚ×Ô¼ºµÄÖ÷Ŀ¼Ï¡£ÖØÐÂÆô¶¯SSH·þÎñÆ÷³ÌÐò£¬ÔÚ¿Í»§¶ËʹÓÃSSH Secure File Transfer ClientµÇ¼£¬¼´Ê¹Ñ¡ÔñÏÔʾ¸ùĿ¼£¬ÆÕͨÓû§Ò²¿´²»µ½ÆäËüµÄÈκÎĿ¼£¬¶øÊǰÑ×Ô¼ºµÄÖ÷Ŀ¼µ±×÷¸ùĿ¼¡£×¢ÒâÎÒÃÇÕâÀïʹÓõÄÊǰ´Óû§ËùÊô×éÏÞÖÆ£¬ÕâÑù¿ÉÒÔʹ°üº¬ÔÚtemplate×éÄÚµÄËùÓÐÓû§¶¼¿ÉÒÔʵÏִ˹¦ÄÜ¡£ÈôÄúÖ»ÒªÏÞÖÆ¸ö±ðÓû§µÄ»°¿ÉÒÔÐÞ¸ÄÏÂÃæµÄÄÚÈÝ£º
# ChRootUsers anonymous,ftp,guest
½áÂÛ
ÊÂʵ֤Ã÷SSHÊÇÒ»Öַdz£ºÃµÄÍøÂ簲ȫ½â¾ö·½°¸£¬µ«ÊÇ£¬Ä¿Ç°ÈÔÓкܶà¹ÜÀíԱʹÓÃtelnet»òftpÕâÖַdz£²»°²È«µÄ¹¤¾ß£¬Ï£Íû¾¡¿ì×ªÒÆµ½SSHÉÏÀ´£¬ÒÔ¼õÉÙÍøÂ簲ȫÒþ»¼¡£

Posted by glen in [shell] | ÆÀÂÛ:4 | ×Üä¯ÀÀ:616 | [´òÓ¡È«ÎÄ]

¹Ø¼ü×Ö:
¹Ø¼ü×Ö: ,²©Ö¾,soft,glen'blog,blog,weblog,blog,qzhiwu@msn.com
ÒýÓÃ [0]
±¾ÎÄÎÞTrackback
Ìí¼ÓÆÀÂÛ
êdzÆ: * ÃÜÂë:
ÐÅÏä: ͬʱע²áÕâ¸öêdzÆ
Ö÷Ò³: http://¿ªÍ·
£Ñ£Ñ:
¡¡ *
ÁªÏµÎÒÃÇ |  
¡¡
Copyright © 2006-2008 DoMsN All Rights Reserved.
ÔÁICP±¸05141795ºÅ