[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Duplicity-talk] security issues
From: |
dean gaudet |
Subject: |
Re: [Duplicity-talk] security issues |
Date: |
Sat, 4 Jan 2003 11:31:10 -0800 (PST) |
On Sat, 4 Jan 2003, Rob Browning wrote:
> Right now, if duplicity was using just ssh (rather than scp) it seems
> like you might be able to use the ssh key "command=foo" facility to
> good effect. However I'm not sure that helps when scp is involved.
you should be able to use command=/usr/bin/scp to limit a key to using
only scp.
you could probably write a shell wrapper which parsed the scp arguments to
ensure it was a read-only operation.
-dean