X-Git-Url: https://mattmccutchen.net/rsync/rsync.git/blobdiff_plain/9ef1cc7cdf50dbb61f13f2d9b314bb7f1c2703ed..a6d8c3f336deebfff152e1d3f6d646ba1dc59eea:/rsyncd.conf.yo diff --git a/rsyncd.conf.yo b/rsyncd.conf.yo index a8c69e6c..bfccfe7b 100644 --- a/rsyncd.conf.yo +++ b/rsyncd.conf.yo @@ -132,12 +132,13 @@ for each module in tt(/etc/rsyncd.conf). dit(bf(use chroot)) If "use chroot" is true, the rsync server will chroot to the "path" before starting the file transfer with the client. This has the advantage of extra protection against possible implementation security -holes, but it has the disadvantages of requiring super-user privileges and +holes, but it has the disadvantages of requiring super-user privileges, of not being able to follow symbolic links outside of the new root path -when reading. When "use chroot" is false, for security reasons -symlinks may only be relative paths pointing to other files within the -root path, and leading slashes are removed from absolute paths. The -default for "use chroot" is true. +when reading, and of implying the --numeric-ids option because /etc/passwd +becomes inaccessible. When "use chroot" is false, for security reasons +symlinks may only be relative paths pointing to other files within the root +path, and leading slashes are removed from absolute paths. The default for +"use chroot" is true. dit(bf(max connections)) The "max connections" option allows you to specify the maximum number of simultaneous connections you will allow. @@ -221,6 +222,11 @@ usernames are passwords are stored in the file specified by the "secrets file" option. The default is for all users to be able to connect without a password (this is called "anonymous rsync"). +See also the bf(CONNECTING TO AN RSYNC SERVER OVER A REMOTE SHELL +PROGRAM) section in rsync(1) for information on how handle an +rsyncd.conf-level username that differs from the remote-shell-level +username when using a remote shell to connect to a rsync server. + dit(bf(secrets file)) The "secrets file" option specifies the name of a file that contains the username:password pairs used for authenticating this module. This file is only consulted if the "auth