[GLLUG] Re: Got a question for GLLUG

Clay Dowling clay at lazarusid.com
Thu Aug 3 13:16:12 EDT 2006


Jeff Lawton said:
> Jim
>
> You are definitely welcome to come to the meeting. As for an ftp server,
> if security is required I would recommend sftp it is part of openssh.
> you may also want to make sure that the rest of the services on Fedora
> are secure, or firewalled.

> Jim Fick wrote:
>>
>> What's the best ftp software to run can on Fedora Core 5? Security is
>> an issue since I need to have this on the web.  Could I come to your
>> meetings?

I might also recommend setting whatever you use to run in a chroot
environment, so that no matter how badly thing go an attacker can't get
access to unauthorized parts of the filesystem.  I haven't run an ftp
server in years, but in general one that drops privledges before accepting
any connections is usually a good idea.

When I have run one I've used OpenBSD and it's paranoid ftp daemon setup. 
Paranoia is a good thing, because the buggers definitely are out to get
you.

Clay Dowling
-- 
Simple Content Management
http://www.ceamus.com



More information about the linux-user mailing list