Improved the "use chroot" section to mention how to get user/group

preservation by name (getting rid of the erroneous bit about the
--numeric-ids option being implied).
This commit is contained in:
Wayne Davison
2004-01-23 09:30:45 +00:00
parent ec40899bb9
commit fa8c787d8b

View File

@@ -135,8 +135,10 @@ to the "path" before starting the file transfer with the client. This has
the advantage of extra protection against possible implementation security
holes, but it has the disadvantages of requiring super-user privileges,
of not being able to follow symbolic links outside of the new root path
when reading, and of implying the --numeric-ids option because /etc/passwd
becomes inaccessible. When "use chroot" is false, for security reasons
when reading, and of complicating the preservation of usernames and groups
(you'll need to supply in-chroot versions of etc/passwd and etc/group if
you want named-based user/group mapping to be performed).
When "use chroot" is false, for security reasons,
symlinks may only be relative paths pointing to other files within the root
path, and leading slashes are removed from absolute paths. The default for
"use chroot" is true.