Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

What is the relationship between Fedora, FTPd, firewall and SELINUX

2025-01-25 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)05/31 Report--

This article mainly introduces "what is the relationship between Fedora, FTPd and firewall and SELINUX". In daily operation, I believe many people have doubts about the relationship between Fedora, FTPd and firewall and SELINUX. Xiaobian consulted all kinds of materials and sorted out simple and easy-to-use methods of operation. I hope it will be helpful to answer the questions of "how is the relationship between Fedora, FTPd and firewall and SELINUX"! Next, please follow the editor to study!

The relationship between Fedora vsFTPd server and firewall and SELINUX; (important)

In Fedora/Redhat/CentOS, you want to set the firewall, you can turn it off, or let ftp "pass" the firewall in customization; [root@localhost ~] # system-config-securitylevel-tui or run the following command to clear firewall rules (generic)

[root@localhost beinan] # iptables-F commentary on SELINUX server, either veteran or novice may have some trouble with SELINUX. It is recommended that you SELINUX; or let Fedora vsFTPd server skip SELINUX startup. That is to say, the general method of Fedora vsFTPd server startup and shutdown should be used; this is effective to start Fedora vsFTPd server in Fedora/Redhat/CentOS.

Of course, you can also turn off SELINUX, in the / etc/selinux/config configuration file as follows

/ etc/selinux/config # This file controls the state of SELinux on the system. # SELINUX= can take one of these three values: # enforcing-SELinux security policy is enforced. # permissive-SELinux prints warnings instead of enforcing. # disabled-SELinux is fully disabled. SELINUX=Disabled # this shuts down the SELINUX server, please restart the system; # SELINUXTYPE= type of policy in use. Possible values are: # targeted-Only targeted network daemons are protected. # strict-Full SELinux protection. SELINUXTYPE=targeted

500 OOPS: vsftpd: refusing to run with writable anonymous root

If we have started the vsFTPd server, but the login test will show a prompt similar to the following; 500OOPS: vsftpd: refusing to run with writable anonymous root this means that the permissions of the ftp user's home directory are incorrect and should be changed.

[root@localhost ~] # more / etc/passwd | grep ftp ftp:x:1000:1000:FTP User:/var/ftp:/sbin/nologin

We found that the home directory of ftp users is in / var/ftp. This is because the permissions of / var/ftp are incorrect, and the permissions of this directory cannot be opened. It is because you have run chmod 777 / var/ftp. If you do not have the home directory of ftp users, of course you have to build one yourself.

The following FTP users' home directories are not fully open to all users, user groups and other user groups; [root@localhost ~] # ls-ld / var/ftpdrwxrwxrwx 3 root root 4096 2005-03-23 / var/ftp should be used to correct this error

[root@localhost ~] # chown root:root / var/ftp [root@localhost ~] # chmod 755 / var/ftp

Some brothers may say, what about the readability, downloading and uploading of anonymous users? This is also simple, create another directory under / var/ftp, permission is 777 on the line, and then change the vsftpd.conf to OK; it is not difficult.

At this point, the study on "what is the relationship between Fedora, FTPd, firewall and SELINUX" is over. I hope to be able to solve your doubts. The collocation of theory and practice can better help you learn, go and try it! If you want to continue to learn more related knowledge, please continue to follow the website, the editor will continue to work hard to bring you more practical articles!

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 301

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report