[BlueOnyx:23503] ssh failure of migrated users

Maurice de Laat mdlaat at muisnetwerken.nl
Thu Nov 21 08:25:53 -05 2019


Hi list,

Migrating vsites from 5209R to 5210R.

Several users on 5209R have shell access enabled. After an easy migrate, 
they get configured with chrooted shell access, which is fine.

However, if such a migrated user tries to ssh to 5210R, an error pops up 
in messages:
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: path /home/.sites/site4 is 
not owned by user 0
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: path /home/.sites/site4 is 
not owned by group 0
Nov 21 13:38:29 centos8 jk_chrootsh[28308]: abort, /home/.sites/site4 is 
not a safe jail, check ownership and permissions.

Let's have a look:
[root at centos8 ~]# ls -la /home/.sites/
total 0
drwxr-xr-x   8 root    root   84 21 nov 13:34 .
drwxr-xr-x. 14 root    root  203 21 nov 13:18 ..
drwxr-xr-x   8 {siteadmin} site4 101 21 nov 13:35 site4

If a manually change that ownership to 0.0, I get other errors in secure:
Nov 21 13:42:31 centos8 sshd[28426]: pam_systemd(sshd:session): Failed 
to create session: Start job for unit user-1015.slice failed with 'canceled'

This can be corrected by setting the ssh access to full, save, and then 
back to chrooted again, after which it works.

Is it possible to have done this automatically during an easy migrate 
import of the vsite *OR* have the users imported with full shell access?

Thank you
Maurice



More information about the Blueonyx mailing list