X-Recipient: archive-cygwin@delorie.com
X-Spam-Check-By: sourceware.org
References: <18774.73042.qm@web34706.mail.mud.yahoo.com> <297343D29C14AA4D822142893ABEAEF305C4486F@srv1163ex1.flightsafety.com>
Date: Fri, 5 Dec 2008 11:40:13 -0800 (PST)
From: TheO <idgajelas@yahoo.com>
Subject: Re: Finally managed to create a jailed SFTP server, but how secure?
To: "Thrall, Bryan" <bryan.thrall@flightsafety.com>, cygwin@cygwin.com
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-ID: <224862.45926.qm@web34703.mail.mud.yahoo.com>
X-IsSubscribed: yes
Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe@cygwin.com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin@cygwin.com>
List-Help: <mailto:cygwin-help@cygwin.com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
Delivered-To: mailing list cygwin@cygwin.com

> What about:
> 
> $ sftp localhost
> Connecting to localhost...
> sftp> symlink 'C:\Windows' bar
> sftp> cd bar

Sorry I missed out the ', here we go again with ' this time:

sftp> symlink 'C:\foobar' foobar
sftp> symlink 'C:\windows' windows
sftp> ls -al
drwxr-xr-x    2 root     root            0 Dec  5 19:37 .
drwxr-xr-x    3 root     root            0 Dec  4 16:22 ..
-rw-r--r--    1 root     root           34 Dec  5 15:52 bar
lrwxrwxrwx    1 root     root            4 Dec  5 15:49 foo
lrwxrwxrwx    1 root     root            9 Dec  5 19:37 foobar
sftp> get foobar
Fetching /home/Administrator/foobar to foobar
Couldn't stat remote file: No such file or directory
sftp> cd windows
Couldn't canonicalise: No such file or directory


Same result though


      

--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Problem reports:       http://cygwin.com/problems.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/

