<?xml version="1.0"?>
<?xml-stylesheet type="text/css" href="http://www.freebsdwiki.net/skins/common/feed.css?303"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>http://www.freebsdwiki.net/index.php?action=history&amp;feed=atom&amp;title=Talk%3AInvalid_shell</id>
		<title>Talk:Invalid shell - Revision history</title>
		<link rel="self" type="application/atom+xml" href="http://www.freebsdwiki.net/index.php?action=history&amp;feed=atom&amp;title=Talk%3AInvalid_shell"/>
		<link rel="alternate" type="text/html" href="http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;action=history"/>
		<updated>2026-05-04T18:35:37Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.18.0</generator>

	<entry>
		<id>http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6589&amp;oldid=prev</id>
		<title>Jimbo at 03:20, 9 June 2006</title>
		<link rel="alternate" type="text/html" href="http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6589&amp;oldid=prev"/>
				<updated>2006-06-09T03:20:19Z</updated>
		
		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table class='diff diff-contentalign-left'&gt;
			&lt;col class='diff-marker' /&gt;
			&lt;col class='diff-content' /&gt;
			&lt;col class='diff-marker' /&gt;
			&lt;col class='diff-content' /&gt;
		&lt;tr valign='top'&gt;
		&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;← Older revision&lt;/td&gt;
		&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;Revision as of 03:20, 9 June 2006&lt;/td&gt;
		&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 8:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 8:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;== only if you need it to be ==&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;== only if you need it to be ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;background: #ffa; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;If you're running an ftpd that refuses to allow logins unless the account has a valid shell, then &amp;lt;s&amp;gt;put the shell into /etc/shells&amp;lt;/s&amp;gt; get a non-retarded ftpd.&amp;#160; Seriously, that chaps my butt pretty badly... I mean, christ, the vast majority of the situations I WANT ftp for involve wanting to give ftp out &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;as an ALTERNATIVE to &lt;/del&gt;shell access.&amp;#160; If somebody's got a shell, what do they need FTP for? =)&amp;#160; --[[User:Jimbo|Jimbo]] 23:19, 8 June 2006 (EDT)&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;If you're running an ftpd that refuses to allow logins unless the account has a valid shell, then &amp;lt;s&amp;gt;put the shell into /etc/shells&amp;lt;/s&amp;gt; get a non-retarded ftpd.&amp;#160; Seriously, that chaps my butt pretty badly... I mean, christ, the vast majority of the situations I WANT ftp for involve wanting to give ftp out &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;INSTEAD OF &lt;/ins&gt;shell access&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;, to allow people to park files on the box without risking them messing about and getting into trouble / trying to run local privilege escalation exploits / etc&lt;/ins&gt;.&amp;#160; If somebody's got a shell, what do they need FTP for? =)&amp;#160; --[[User:Jimbo|Jimbo]] 23:19, 8 June 2006 (EDT)&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;!-- diff cache key bsdwiki:diff:version:1.11a:oldid:6588:newid:6589 --&gt;
&lt;/table&gt;</summary>
		<author><name>Jimbo</name></author>	</entry>

	<entry>
		<id>http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6588&amp;oldid=prev</id>
		<title>Jimbo: only if you need it to be</title>
		<link rel="alternate" type="text/html" href="http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6588&amp;oldid=prev"/>
				<updated>2006-06-09T03:19:07Z</updated>
		
		<summary type="html">&lt;p&gt;only if you need it to be&lt;/p&gt;
&lt;table class='diff diff-contentalign-left'&gt;
			&lt;col class='diff-marker' /&gt;
			&lt;col class='diff-content' /&gt;
			&lt;col class='diff-marker' /&gt;
			&lt;col class='diff-content' /&gt;
		&lt;tr valign='top'&gt;
		&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;← Older revision&lt;/td&gt;
		&lt;td colspan='2' style=&quot;background-color: white; color:black;&quot;&gt;Revision as of 03:19, 9 June 2006&lt;/td&gt;
		&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 5:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 5:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;On the other hand, some FTP daemons and database authentication schemes require a standard shell, at least by default, even if it is an invalid one and even if the service provides its own shell. What's your view? Should &amp;lt;code&amp;gt;/usr/sbin/nologin&amp;lt;/code&amp;gt; be in the shells database?&amp;#160; [[User:Ninereasons|Ninereasons]] 12:30, 8 June 2006 (EDT)&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background: #eee; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;On the other hand, some FTP daemons and database authentication schemes require a standard shell, at least by default, even if it is an invalid one and even if the service provides its own shell. What's your view? Should &amp;lt;code&amp;gt;/usr/sbin/nologin&amp;lt;/code&amp;gt; be in the shells database?&amp;#160; [[User:Ninereasons|Ninereasons]] 12:30, 8 June 2006 (EDT)&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;== only if you need it to be ==&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt;&amp;#160;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;background: #cfc; color:black; font-size: smaller;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;color: red; font-weight: bold; text-decoration: none;&quot;&gt;If you're running an ftpd that refuses to allow logins unless the account has a valid shell, then &amp;lt;s&amp;gt;put the shell into /etc/shells&amp;lt;/s&amp;gt; get a non-retarded ftpd.&amp;#160; Seriously, that chaps my butt pretty badly... I mean, christ, the vast majority of the situations I WANT ftp for involve wanting to give ftp out as an ALTERNATIVE to shell access.&amp;#160; If somebody's got a shell, what do they need FTP for? =)&amp;#160; --[[User:Jimbo|Jimbo]] 23:19, 8 June 2006 (EDT)&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;!-- diff cache key bsdwiki:diff:version:1.11a:oldid:6585:newid:6588 --&gt;
&lt;/table&gt;</summary>
		<author><name>Jimbo</name></author>	</entry>

	<entry>
		<id>http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6585&amp;oldid=prev</id>
		<title>Ninereasons at 16:30, 8 June 2006</title>
		<link rel="alternate" type="text/html" href="http://www.freebsdwiki.net/index.php?title=Talk:Invalid_shell&amp;diff=6585&amp;oldid=prev"/>
				<updated>2006-06-08T16:30:56Z</updated>
		
		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;==/etc/shells==&lt;br /&gt;
I wrote &amp;amp;mdash;&lt;br /&gt;
:''Obviously, you don't want an invalid shell to be listed in the database of standard shells (/etc/shells).''&lt;br /&gt;
&amp;amp;mdash; or do you?  There seems to be a difference of opinion about this, and I'm undecided between them.  My ISP's SunOS lists &amp;lt;code&amp;gt;ftponly&amp;lt;/code&amp;gt; and &amp;lt;code&amp;gt;nologin&amp;lt;/code&amp;gt; in &amp;lt;code&amp;gt;/etc/shells&amp;lt;/code&amp;gt;.  I've always listed these there, when I was running Linux.  But the hazard is, it makes it possible for a non-root user to assign itself a non-standard shell, disabling the account - which only a super-user can fix.  &lt;br /&gt;
&lt;br /&gt;
On the other hand, some FTP daemons and database authentication schemes require a standard shell, at least by default, even if it is an invalid one and even if the service provides its own shell. What's your view? Should &amp;lt;code&amp;gt;/usr/sbin/nologin&amp;lt;/code&amp;gt; be in the shells database?  [[User:Ninereasons|Ninereasons]] 12:30, 8 June 2006 (EDT)&lt;/div&gt;</summary>
		<author><name>Ninereasons</name></author>	</entry>

	</feed>