Bug 1227 - sftp-server does not respect rlogin = false
Summary: sftp-server does not respect rlogin = false
Status: CLOSED DUPLICATE of bug 1226
Alias: None
Product: Portable OpenSSH
Classification: Unclassified
Component: sftp-server (show other bugs)
Version: 4.3p2
Hardware: PPC AIX
: P2 normal
Assignee: Assigned to nobody
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2006-09-13 22:15 AEST by Cris B
Modified: 2006-10-07 11:45 AEST (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Cris B 2006-09-13 22:15:01 AEST
using the packages from http://sf.net/projects/openssh-aix

have set a user 'appa' to be rlogin=false in /etc/security/users

when I 'ssh appa@gromit':

appa@gromit's password:
Received disconnect from 158.234.7.207: 2: Remote login for account appa is not
allowed.

when i 'scp *.txt appa@gromit:~':

appa@gromit's password:
Received disconnect from 158.234.7.207: 2: Remote login for account appa is not
allowed.
lost connection

so all good so far, but when I 'sftp appa@gromit':

Connecting to gromit...
appa@gromit's password:
sftp>

i am allowed to log in!!!!! this happens only on AIX5.3. On AIX5.2 (same  user setup) I get:

Connecting to fenris...
appa@fenris's password:
Permission denied, please try again.
Comment 1 Darren Tucker 2006-09-13 22:18:45 AEST

*** This bug has been marked as a duplicate of bug 1226 ***
Comment 2 Darren Tucker 2006-10-07 11:45:53 AEST
Change all RESOLVED bug to CLOSED with the exception of the ones fixed post-4.4.