六狼论坛

 找回密码
 立即注册

QQ登录

只需一步,快速开始

新浪微博账号登陆

只需一步,快速开始

搜索
查看: 807|回复: 0

Linux 下vsftp 设置

[复制链接]

升级  96%

12

主题

12

主题

12

主题

童生

Rank: 1

积分
48
 楼主| 发表于 2013-2-7 11:40:47 | 显示全部楼层 |阅读模式
由于项目的需要,我们用的RedHat Eneterprise 4.0版,安装的时候选择安装ftp server即可
下面是简单的设置过程
 
      # vi /etc/vsftpd/vsftpd.conf ← 编辑配置文件
      
      
      # Example config file /etc/vsftpd/vsftpd.conf
      #
      # The default compiled in settings are fairly paranoid. This sample file
      # loosens things up a bit, to make the ftp daemon more usable.
      # Please see vsftpd.conf.5 for all compiled in defaults.
      #
      # READ THIS: This example file is NOT an exhaustive list of vsftpd options.
      # Please read the vsftpd.conf.5 manual page to get a full idea of vsftpd's
      # capabilities.
      #
      # Allow anonymous FTP? (Beware - allowed by default if you comment this      out).
      anonymous_enable=NO ← 匿名访问禁止
      #
      # Uncomment this to allow local users to log in.
      local_enable=YES
      #
      # Uncomment this to enable any form of FTP write command.
      write_enable=YES
      #
      # Default umask for local users is 077. You may wish to change this to      022,
      # if your users expect that (022 is used by most other ftpd's)
      local_umask=022
      #
      # Uncomment this to allow the anonymous FTP user to upload files. This      only
      # has an effect if the above global write enable is activated. Also, you      will
      # obviously need to create a directory writable by the FTP user.
      #anon_upload_enable=YES
      #
      # Uncomment this if you want the anonymous FTP user to be able to create
      # new directories.
      #anon_mkdir_write_enable=YES
      #
      # Activate directory messages - messages given to remote users when they
      # go into a certain directory.
      dirmessage_enable=YES
      #
      # Activate logging of uploads/downloads.
      xferlog_enable=YES
      #
      # Make sure PORT transfer connections originate from port 20 (ftp-data).
      connect_from_port_20=YES
      #
      # If you want, you can arrange for uploaded anonymous files to be owned      by
      # a different user. Note! Using "root" for uploaded files is      not
      # recommended!
      #chown_uploads=YES
      #chown_username=whoever
      #
      # You may override where the log file goes if you like. The default is      shown
      # below.
      #xferlog_file=/var/log/vsftpd.log
      #
      # If you want, you can have your log file in standard ftpd xferlog format
      # 格式化日志设置
      xferlog_std_format=NO ← NO
      
      log_ftp_protocol=YES ← 追加该设置
      #
      # You may change the default value for timing out an idle session.
      #idle_session_timeout=600
      #
      # You may change the default value for timing out a data connection.
      #data_connection_timeout=120
      #
      # It is recommended that you define on your system a unique user which      the
      # ftp server can use as a totally isolated and unprivileged user.
      #nopriv_user=ftpsecure
      #
      # Enable this and the server will recognise asynchronous ABOR requests.      Not
      # recommended for security (the code is non-trivial). Not enabling it,
      # however, may confuse older FTP clients.
      #async_abor_enable=YES
      #
      # By default the server will pretend to allow ASCII mode but in fact ignore
      # the request. Turn on the below options to have the server actually do      ASCII
      # mangling on files when in ASCII mode.
      # Beware that turning on ascii_download_enable enables malicious remote      parties
      # to consume your I/O resources, by issuing the command "SIZE /big/file"      in
      # ASCII mode.
      # These ASCII options are split into upload and download because you may      wish
      # to enable ASCII uploads (to prevent uploaded scripts etc. from breaking),
      # without the DoS risk of SIZE and ASCII downloads. ASCII mangling should      be
      # on the client anyway..
      
      # 可以用ascii上传,下载设置
      ascii_upload_enable=YES ← #去掉
      ascii_download_enable=YES ← #去掉
      #
      # You may fully customise the login banner string:
      
      # FTP版本设置
      ftpd_banner=FTP Server ← # 任意设置即可
      #
      # You may specify a file of disallowed anonymous e-mail addresses. Apparently
      # useful for combatting certain DoS attacks.
      #deny_email_enable=YES
      # (default follows)
      #banned_email_file=/etc/vsftpd.banned_emails
      #
      # You may specify an explicit list of local users to chroot() to their      home
      # directory. If chroot_local_user is YES, then this list becomes a list      of
      # users to NOT chroot().
      
      # 访问目录,及访问用户设置
      chroot_list_enable=YES ← #去掉,设置为YES
      
      chroot_local_user=YES ← 追加设置
      
      # 目录设置
      local_root=/home/ftp ← 追加设置,注意一定要设置为后面用户可以操作的权限
      # (default follows)
      # 可以操作的用户设置
      chroot_list_file=/etc/vsftpd.chroot_list ← #去掉
      #
      # You may activate the "-R" option to the builtin ls. This is      disabled by
      # default to avoid remote users being able to cause excessive I/O on large
      # sites. However, some broken FTP clients such as "ncftp" and      "mirror" assume
      # the presence of the "-R" option, so there is a strong case      for enabling it.
      
      # 删除许可
      ls_recurse_enable=YES ← #删除
      
      pam_service_name=vsftpd
      userlist_enable=YES
      #enable for standalone mode
      listen=YES
      tcp_wrappers=YES
      use_localtime=YES
      
      # PASV许可连接
      pasv_enable=YES ← 追加设置
      
      pasv_min_port=4000 ← 
追加设置(最小port指定)
      pasv_max_port=4029 ← 
追加设置最大port指定
      
      # . 文件表示许可
      force_dot_files=YES ← 
追加设置
      
      
      
            
用户设置
 

      # echo 用户名 >> /etc/vsftpd.chroot_list
      
      
      
            FT
重新启动vsftp即可
FTPサーバーの起動と自動起動の設定      

      # /etc/init.d/vsftpd start ← 启动
      Starting vsftpd for vsftpd:            [ OK ]

# chkconfig vsftpd on ← FTP自启动设置
 
 
 
您需要登录后才可以回帖 登录 | 立即注册 新浪微博账号登陆

本版积分规则

快速回复 返回顶部 返回列表