ScanMonlabScanMon Wiki | ScanMon | Jacky's Blog | IT Note

[ ÓÀÔ¶µÄUNIX::UNIX¼¼Êõ×ÊÁϵı¦¿â ]

Ê×Ò³ > Ó¦ÓÃרÌâ > FTP > ÕýÎÄ
 

proftpÏêϸÅäÖÃÒ»ÀÀ

À´Ô´:²»Ïê (2006-02-16 18:09:49)

#globalÒ²¿É²»Òª£¬ºóÃæÈçÉèÖöà¸öÐéÄâÕ¾µãÇåÎú
IdentLookups off #Á¬½Ó¿ìЩ »¹ÓкóÃæµÄ UseReverseDNS
RequireValidShell off #ÄäÃûµÄÒ»°ãÐèÒª¼ÓÉÏÕâ¸ö
MaxLoginAttempts 1 #ÄäÃûµÄ»°1¾Í¿ÉÒÔÁË£¬×î´óÃÜÂëÑéÖ¤´ÎÊý
WtmpLog NONE #²»¼Çlogµ½wtmp
DenyFilter \*.*/|.ftpaccess #DenyFilter×öһЩ¹ýÂË£¬ÕýÔò±í´ïʽ
#DenyFilter ~!`\**/?,$@ # ¸ù¾Ý×Ô¼ºÐèҪд°É£¬ÉÏÃæµÄºÃÀÃ:P
#LsDefaultOptions "-l" #ls²ÎÊý
#AllowForeignAddress on #ÒªÔÊÐí FXP д³É on
CommandBufferSize 128 #×î´óÃüÁ¶È
DirFakeUser On FTP #²»ÏÔʾ¸øÓû§ÕæÊµµÄÓû§¡¢×é
DirFakeGroup On FTP
DeferWelcome on #ÏÔʾ»¶Ó­ÐÅÏ¢
PathDenyFilter "(^\.ftpaccess$)" #ͬDenyFilter ¹ýÂËÓÃ
User nobody #proftpd ÒÔÄĸöÓû§¡¢×éµÄÉí·ÝÔËÐÐ
Group nobody

TimesGMT off #ʱ¼ä


DenyAll
#³öÓÚijЩ¿¼ÂÇ£¬¿ªÊ¼½ûµô£¬ºóÃæÐèÒªÔÙ´ò¿ª¡£READÒ²¿É¼Ó¹ýÀ´...
#Ò²¿ÉÒÔÕâÀïÉèÖÃÔÊÐíÁ¬½ÓµÄÍø¶Î Login£¬»òÕߺóÃæ£¬½¨ÒéÓ÷À»ðǽ

IgnoreHidden on



HideNoAccess on
AllowOverwrite off #½ûÖ¹ÖØÐ´¸²¸Ç£¬ºóÃæ´ò¿ªÔÊÐíÐø´«
#AllowRetrieveRestartĬÈÏÊÇon Ò²¿ÉÒÔд½øÀ´


ServerName "FTP server"
ServerType standalone #ÔËÐз½Ê½ »¹¿ÉÒÔÓà inetd xinetd
ServerIdent on "Welcome to FTP" #Éí·ÝÑé֤ǰÏÔʾ¸øÓû§µÄ£¬Ò²¿ÉÓÃÎļþ£¬ÕâÀïÂÔ
DefaultServer on
UseReverseDNS off #¼Ó¿ìÁ¬½ÓËÙ¶È
Port 21 #FTP¶Ë¿Ú
Umask 022 #ÑÚÂë ΪÁ˱ãÓÚ¹ÜÀí Óà 002
PassivePorts 20000 30000 #±»¶¯Ä£Ê½¶Ë¿Ú¶Î

SystemLog /var/proftpd/syslog #log ×¢Òâ×Ô¼º¼ÓÉÏ logrotate ÅäÖÃ

MaxInstances 250 #×î´ó
TimeoutLogin 30 #Éí·ÝÑéÖ¤³¬Ê±
TimeoutIdle 120 #·¢´ô³¬Ê±
TimeoutNoTransfer 300 #ÎÞÊý¾Ý´«Ê䳬ʱ
#TimeoutStalled 300

#logһЩ×Ô¶¨Òå¸ñʽ£¬¸ù¾ÝÐèÒªµ÷Õû»òÕßÓÃĬÈÏ
LogFormat myxfer "%h %u %t \"%r\" %s %b"
LogFormat default "%h %a %u %t \"%r\" %s %b $$ \'%F\'"
LogFormat auth "%h %a %t \"%r\" %s"
LogFormat write "%h %a %t \"%r\" %s %b"

#ÄäÃûµÄ¸ùĿ¼ ¼ÇµÃÉèÖÃÏàӦĿ¼ȨÏÞ£¬ftp Óû§Ó¦ÖÁÉÙÓÐ r x ȨÏÞ

User ftp
Group ftpadmin
Umask 002
UserAlias anonymous ftp

MaxClients 50 "¿ÍÂú(%m)" #È˶àʱµÄÌáʾÐÅÏ¢£¬¿ÉÒÔÓÃһЩ±äÁ¿
#RateReadBPS 500000 #ÏÞËÙÓÃ
MaxClientsPerHost 2 "Á¬½ÓÊý¶à" #Ò»¸öIPµÄÁ¬½ÓÊý
TransferLog NONE #log
ExtendedLog /var/proftpd/upload.log write myxfer #log
ExtendedLog /var/proftpd/download.log read myxfer #log

DisplayLogin etc/welcome #»¶Ó­Îļþ£¬¿ÉÒÔÓÃһЩ±äÁ¿
DisplayFirstChdir .message #¸Ä±äĿ¼ʱÏÔʾµÄÏûÏ¢

AuthAliasOnly on #Ö»ÔÊÐí UserAlias ¹ýµÄ ÕâÀïÖ»ÔÊÐí anonymous ²»ÔÊÐíftp

AllowAll
#´ò¿ªÔÊÐíÁ¬½Ó£¬¿ÉÒÔÕâÊÇÔÊÐí·ÃÎʵÄÍø¶Î£¬½¨Òé·À»ðǽ


AllowStoreRestart on #ÔÊÐíÉÏ´«Ä¿Â¼£¬¿ÉÒÔÐø´«£¬²»Äܸ²¸Ç

AllowAll
#Èç¹û²»ÏëÈÃÏÂÔØ£¬Ö»ÈÃÉÏÔØ ¿ÉÒÔ¼ÓÉÏ
#DenyAll
#µ½Õâ²î²»¶à¾ÍÍêÁË£¬Ã¿¸öĿ¼¿ÉÒÔд .ftpaccess ÉèÖÃȨÏÞ
#ºóÃæÕâÁ½¸ö¿ÉÒԲο¼¸ù¾ÝÐèÒª

#ÔÚFTP¸ùĿ¼ÓÖ²»Èÿ´µÄ£¬ÉÏÃæ°Ñ»¶Ó­ÐÅÏ¢·ÅÀïÃæÁË£¬µ±È»¿ÉÒԷűðµÄ


DenyAll


#ÏÞÖÆÌØ¶¨IP¶ÎÄÜ¿´µÄ£¬Ò²¿ÉÔÚĿ¼µÄ.ftpaccessÀïÃæÉèÖÃ

Order deny,allow
Allow from 166.111.


#µ½ÕâÄäÃûµÄ¾ÍÍêÁË

#¼ÓÕʺÅÃÜÂë¿ÉÒÔÓöàÖÖ·½Ê½£¬ÃÜÂëÎļþ£¬Êý¾Ý¿âµÈ
#Èç¹ûÓÃϵͳµÄÕʺţ¬¿ÉÒÔÓà DefaultRoot ÏÞÖÆ»î¶¯Ä¿Â¼£¬±ÈÈç°ÑTA¶ÂÔÚ¼ÒÀï ~
#»¹ÓбðµÄºÜ¶à ¸ù¾ÝÐèÒª×Ô¼º¿´Îĵµ°É ±ÈÈç´ò¿ªMultilineRFC2228µÈ
#
#¼ÇµÃÉèÖÃÏàӦĿ¼ȨÏÞ£¬r x Ò»¸ö¶¼²»ÄÜÉÙ
#¼ÇµÃÉèÖÃÎļþȨÏÞ(chmod/chown) ÅäÖà .ftpaccess
#Ó¦¸ÃÁ˽â ls rm chmod chown find xargs crontab µÈÃüÁîÒÔ±ã½øÐмòµ¥¹ÜÀí
#kill/killall -HUP »òÕßÓýű¾ ftpshut ftpwho
#rm -f /etc/shutmsg
#ÏàÓ¦µÄ¸¨Öú¹¤¾ß»¹Óкܶ࣬Ҳ¿ÉÒÔ×Ô¼ºÐ´½Å±¾
(http://www.fanqiang.com)



 
 Ïà¹ØÎÄÕÂ
Proftpd ¼ÇÒäÌåй©¾Ü¾ø·þÎñ¹¥»÷©¶´ 2001-05-20 22:08:00
ProFTPD mod_sqlpw ©¶´ 2001-05-21 07:00:00
proFTPÖÐÈçºÎ½«Óû§ÏÞÖÆÔÚ×Ô¼ºµÄhomeĿ¼Ï£¿ 2001-07-09 22:09:22
proftpd °²×°ÊּǠ2001-04-20 18:30:30
ÈçºÎ°Ñ WU-FTPD »»³É ProFTPD£¿ 2001-05-02 03:19:12
ProFtpd¿ìËÙÖ¸ÄÏ 2001-10-20 09:05:00
ProFTPD Ïê½â 2002-04-03 09:26:24
proftpd log Îļþʵʱ·ÖÎö£¬¶¯Ì¬·â½û/½â·â 2005-03-24 10:49:06
linuxϵÄproftpµÄÅäÖà2005-03-30 12:12:17
proftp 1.2.9µÄ»ù±¾°²×°ÊÖ²á 2005-10-26 10:37:13
 

¡ï  ¸ÐлËùÓеÄ×÷ÕßΪÎÒÃÇѧϰ¼¼Êõ֪ʶÌṩÁËÒ»Ìõ½Ý¾¶  ¡ï
www.fanqiang.com