Jump to content

DOCUMENT OF SFTP SERVER WITH 256 BIT AES ENCRYPTION

From TetraWiki
Revision as of 15:38, 31 December 2012 by Biswajit (talk | contribs) (Created page with "DOCUMENT OF SFTP SERVER WITH 256 BIT AES ENCRYPTION Sftp comes with ssh service so there is no separate daemon for this '''STEPS'''. Open sshd config file which is /etc/ss...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

DOCUMENT OF SFTP SERVER WITH 256 BIT AES ENCRYPTION


Sftp comes with ssh service so there is no separate daemon for this


STEPS. Open sshd config file which is /etc/ssh/sshd_config

Comment out below line

#Subsystem sftp /usr/libexec/openssh/sftp-server


And add below lines


Subsystem sftp internal-sftp

Match Group sftponly

ChrootDirectory /home/%u #JAILED FTP

ForceCommand internal-sftp

AllowTcpForwarding no

Ciphers aes256-ctr,aes256-cbc #to enable aes 256bit encryption


groupadd sftponly


usermod -g sftponly saket


usermod -s /bin/false saket


chmod 755 /home/saket


chmod 755 /home/saket


chown root:root /home/saket


mkdir /home/saket/FTPDATA


chown saket:sftponly /home/saket/FTPDATA


restart ssh