[BlueOnyx:23503] ssh failure of migrated users
Maurice de Laat
mdlaat at muisnetwerken.nl
Thu Nov 21 08:25:53 -05 2019
Hi list,
Migrating vsites from 5209R to 5210R.
Several users on 5209R have shell access enabled. After an easy migrate,
they get configured with chrooted shell access, which is fine.
However, if such a migrated user tries to ssh to 5210R, an error pops up
in messages:
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: path /home/.sites/site4 is
not owned by user 0
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: path /home/.sites/site4 is
not owned by group 0
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: abort, /home/.sites/site4 is
not a safe jail, check ownership and permissions.
Let's have a look:
[root at centos8 ~]# ls -la /home/.sites/
total 0
drwxr-xr-x 8 root root 84 21 nov 13:34 .
drwxr-xr-x. 14 root root 203 21 nov 13:18 ..
drwxr-xr-x 8 {siteadmin} site4 101 21 nov 13:35 site4
If a manually change that ownership to 0.0, I get other errors in secure:
Nov 21 13:42:31 centos8 sshd[28426]: pam_systemd(sshd:session): Failed
to create session: Start job for unit user-1015.slice failed with 'canceled'
This can be corrected by setting the ssh access to full, save, and then
back to chrooted again, after which it works.
Is it possible to have done this automatically during an easy migrate
import of the vsite *OR* have the users imported with full shell access?
Thank you
Maurice
More information about the Blueonyx
mailing list