[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Duplicity-talk] security issues
From: |
dean gaudet |
Subject: |
Re: [Duplicity-talk] security issues |
Date: |
Sat, 4 Jan 2003 11:46:23 -0800 (PST) |
On Sat, 4 Jan 2003, dean gaudet wrote:
> On Sat, 4 Jan 2003, Rob Browning wrote:
>
> > Right now, if duplicity was using just ssh (rather than scp) it seems
> > like you might be able to use the ssh key "command=foo" facility to
> > good effect. However I'm not sure that helps when scp is involved.
>
> you should be able to use command=/usr/bin/scp to limit a key to using
> only scp.
>
> you could probably write a shell wrapper which parsed the scp arguments to
> ensure it was a read-only operation.
oops... *apply food to stomach*...
command=foo has fixed arguments.
nevermind, scp won't work.
sftp would though :)
-dean