version 1.24, 2013/10/09 23:42:17 |
version 1.25, 2013/10/14 14:18:56 |
|
|
.Op Fl d Ar start_directory |
.Op Fl d Ar start_directory |
.Op Fl f Ar log_facility |
.Op Fl f Ar log_facility |
.Op Fl l Ar log_level |
.Op Fl l Ar log_level |
|
.Op Fl P Ar blacklisted_requests |
|
.Op Fl p Ar whitelisted_requests |
.Op Fl u Ar umask |
.Op Fl u Ar umask |
.Ek |
.Ek |
.Nm |
.Nm |
|
|
DEBUG2 and DEBUG3 each specify higher levels of debugging output. |
DEBUG2 and DEBUG3 each specify higher levels of debugging output. |
The default is ERROR. |
The default is ERROR. |
.It Fl P Ar blacklisted_requests |
.It Fl P Ar blacklisted_requests |
Specify a comma-separated list of sftp protocol requests that are banned by |
Specify a comma-separated list of SFTP protocol requests that are banned by |
the server. |
the server. |
.Nm |
.Nm |
will reply to any blacklisted request with a failure. |
will reply to any blacklisted request with a failure. |
The |
The |
.Fl Q |
.Fl Q |
flag allows querying |
flag can be used to determine the supported request types. |
.Nm |
|
to determine the supported request types. |
|
If both a blacklist and a whitelist are specified, then the blacklist is |
If both a blacklist and a whitelist are specified, then the blacklist is |
applied before the whitelist. |
applied before the whitelist. |
.It Fl p Ar whitelisted_requests |
.It Fl p Ar whitelisted_requests |
Specify a comma-separated list of sftp protocol requests that are permitted |
Specify a comma-separated list of SFTP protocol requests that are permitted |
by the server. |
by the server. |
All request types that are not on the whitelist will be logged and replied |
All request types that are not on the whitelist will be logged and replied |
to with a failure message. |
to with a failure message. |
.Pp |
.Pp |
Care must be taken when using this feature to ensure that requests made |
Care must be taken when using this feature to ensure that requests made |
implicitly by sftp clients are permitted. |
implicitly by SFTP clients are permitted. |
.It Fl Q Ar protocol_feature |
.It Fl Q Ar protocol_feature |
Query protocol features supported by |
Query protocol features supported by |
.Nm . |
.Nm . |
At present the only feature that may be queried is |
At present the only feature that may be queried is |
.Dq requests , |
.Dq requests , |
that may be used for whitelisting or blacklisting (flags |
which may be used for black or whitelisting (flags |
.Fl p |
|
and |
|
.Fl P |
.Fl P |
respectively.) |
and |
|
.Fl p |
|
respectively). |
.It Fl R |
.It Fl R |
Places this instance of |
Places this instance of |
.Nm |
.Nm |