<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://kb.rvmgroup.it/index.php?action=history&amp;feed=atom&amp;title=Configurare_un_accesso_SFTP_in_chroot_su_Debian</id>
	<title>Configurare un accesso SFTP in chroot su Debian - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://kb.rvmgroup.it/index.php?action=history&amp;feed=atom&amp;title=Configurare_un_accesso_SFTP_in_chroot_su_Debian"/>
	<link rel="alternate" type="text/html" href="https://kb.rvmgroup.it/index.php?title=Configurare_un_accesso_SFTP_in_chroot_su_Debian&amp;action=history"/>
	<updated>2026-06-19T22:44:32Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.44.2</generator>
	<entry>
		<id>https://kb.rvmgroup.it/index.php?title=Configurare_un_accesso_SFTP_in_chroot_su_Debian&amp;diff=10470&amp;oldid=prev</id>
		<title>Gabriele.vivinetto: Created page with &quot;Aggiornato per Debian Buster  * Creare utenza  useradd -m pippo  * Impostare password lunga (non verrà utlizzata):  echo &quot;pippo:jhg7dsjd8j9w$DF-&quot; | chpasswd  * Impostare perm...&quot;</title>
		<link rel="alternate" type="text/html" href="https://kb.rvmgroup.it/index.php?title=Configurare_un_accesso_SFTP_in_chroot_su_Debian&amp;diff=10470&amp;oldid=prev"/>
		<updated>2020-10-20T17:39:39Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;Aggiornato per Debian Buster  * Creare utenza  useradd -m pippo  * Impostare password lunga (non verrà utlizzata):  echo &amp;quot;pippo:jhg7dsjd8j9w$DF-&amp;quot; | chpasswd  * Impostare perm...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;Aggiornato per Debian Buster&lt;br /&gt;
&lt;br /&gt;
* Creare utenza&lt;br /&gt;
 useradd -m pippo&lt;br /&gt;
&lt;br /&gt;
* Impostare password lunga (non verrà utlizzata):&lt;br /&gt;
 echo &amp;quot;pippo:jhg7dsjd8j9w$DF-&amp;quot; | chpasswd&lt;br /&gt;
&lt;br /&gt;
* Impostare permission su chroot dir (sarà non scrivibile):&lt;br /&gt;
 chown root: /home/pippo&lt;br /&gt;
&lt;br /&gt;
* Impostare SFTP e configurazione user:&lt;br /&gt;
&lt;br /&gt;
 vi /etc/ssh/sshd_config&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
# override default of no subsystems&lt;br /&gt;
#Subsystem  sftp    /usr/lib/openssh/sftp-server&lt;br /&gt;
Subsystem   sftp    internal-sftp&lt;br /&gt;
&lt;br /&gt;
Match User pippo&lt;br /&gt;
  X11Forwarding no&lt;br /&gt;
  AllowTcpForwarding no&lt;br /&gt;
  ChrootDirectory /home/pippo&lt;br /&gt;
  ForceCommand internal-sftp&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 systemctl restart sshd&lt;br /&gt;
&lt;br /&gt;
* Caricare l&amp;#039;eventuale chiave ssh per l&amp;#039;utente pippo&lt;br /&gt;
&lt;br /&gt;
* Se la diretory da accedere è esterna alla chroot, O se nel suo percorso ci sono directory NON possedute da root, occorre montare la directory esterna a /home/pippo in cui si vuole entrare:&lt;br /&gt;
&lt;br /&gt;
 mkdir /home/pippo/documentation&lt;br /&gt;
 mount -o bind /var/www/example.com/www/html/pub/media/pdf/documentation/ /home/pippo/documentation&lt;br /&gt;
&lt;br /&gt;
* Loggarsi con sftp o winscp e testare&lt;br /&gt;
&lt;br /&gt;
* Smontare directory e mettere in fstab per rimontare al boot:&lt;br /&gt;
 umount /home/pippo/documentation&lt;br /&gt;
&lt;br /&gt;
 vi /etc/fstab&lt;br /&gt;
&lt;br /&gt;
 /var/www/example.com/www/html/pub/media/pdf/documentation/ /home/pippo/documentation none   bind    0       0&lt;br /&gt;
&lt;br /&gt;
=Riferimenti=&lt;br /&gt;
*[https://www.linuxtechi.com/configure-sftp-chroot-debian10/ How to Configure SFTP Server with Chroot in Debian 10]&lt;br /&gt;
*[https://serverfault.com/questions/584986/bad-ownership-or-modes-for-chroot-directory-component ssh - bad ownership or modes for chroot directory component - Server Fault]&lt;/div&gt;</summary>
		<author><name>Gabriele.vivinetto</name></author>
	</entry>
</feed>