Active Topics

 


Reply
Thread Tools
Posts: 569 | Thanked: 462 times | Joined on Jul 2010 @ USA
#1
I'd like to create on my N900 a new user that's very restricted:
having read-only rights to the /media/mmc1/DCIM/mp3 directory, & being unable to see, go to, or do anything with the rest of the file system.

The purpose is to create a guest login to allow sftp: connection via Rhythmbox on another computer to play music from the N900.

I've seen pages on the Linux "adduser" command, but haven't been able to figure out how to give the user such a narrow scope of rights: read-only in only one directory (and its subdirectories), & nothing else.
 
Posts: 482 | Thanked: 550 times | Joined on Oct 2010
#2
Perhaps add them to a group that only has read-only access to that folder?
 
Posts: 115 | Thanked: 342 times | Joined on Dec 2010
#3
Unfortanly, we do not have a security framework like apparmor on the N900(probably selinux, but nobody cared about it yet afaik). Anyway, you need Access Control Lists (setfacl). There is just one problem: the rootfs is ubifs, and ubifs does not have acl support, which basically prevents/limits you to achieve what you want.

But there should be other/better solutions to stream music from the N900 than using sftp/sshfs or something like that.
 

The Following User Says Thank You to NIN101 For This Useful Post:
Reply


 
Forum Jump


All times are GMT. The time now is 14:40.