<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.1701technology.com/index.php?action=history&amp;feed=atom&amp;title=SFTP_CHROOT_SSHD</id>
	<title>SFTP CHROOT SSHD - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.1701technology.com/index.php?action=history&amp;feed=atom&amp;title=SFTP_CHROOT_SSHD"/>
	<link rel="alternate" type="text/html" href="https://wiki.1701technology.com/index.php?title=SFTP_CHROOT_SSHD&amp;action=history"/>
	<updated>2026-05-06T14:02:01Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.34.1</generator>
	<entry>
		<id>https://wiki.1701technology.com/index.php?title=SFTP_CHROOT_SSHD&amp;diff=275&amp;oldid=prev</id>
		<title>Michael.mast at 15:23, 18 January 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.1701technology.com/index.php?title=SFTP_CHROOT_SSHD&amp;diff=275&amp;oldid=prev"/>
		<updated>2017-01-18T15:23:30Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;Revision as of 15:23, 18 January 2017&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot; &gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;The following was written by http://serverfault.com/users/387035/will&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&amp;lt;br&amp;gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&amp;lt;br&amp;gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref&amp;gt;http://serverfault.com/questions/816219/sftp-suddenly-failing-for-chroot-accounts-on-amazon-linux&amp;lt;/ref&amp;gt;It appears after the OpenSSH-6.6.1p1-31 update, only the user's primary group is checked for authentication during the SFTP connection attempt. With root and the user's primary group owning the home directory and at least 710 permissions, connection attempts should succeed.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref&amp;gt;http://serverfault.com/questions/816219/sftp-suddenly-failing-for-chroot-accounts-on-amazon-linux&amp;lt;/ref&amp;gt;It appears after the OpenSSH-6.6.1p1-31 update, only the user's primary group is checked for authentication during the SFTP connection attempt. With root and the user's primary group owning the home directory and at least 710 permissions, connection attempts should succeed.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;br&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;br&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Michael.mast</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.1701technology.com/index.php?title=SFTP_CHROOT_SSHD&amp;diff=274&amp;oldid=prev</id>
		<title>Michael.mast: Created page with &quot;&lt;ref&gt;http://serverfault.com/questions/816219/sftp-suddenly-failing-for-chroot-accounts-on-amazon-linux&lt;/ref&gt;It appears after the OpenSSH-6.6.1p1-31 update, only the user's pri...&quot;</title>
		<link rel="alternate" type="text/html" href="https://wiki.1701technology.com/index.php?title=SFTP_CHROOT_SSHD&amp;diff=274&amp;oldid=prev"/>
		<updated>2017-01-18T15:22:23Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;&amp;lt;ref&amp;gt;http://serverfault.com/questions/816219/sftp-suddenly-failing-for-chroot-accounts-on-amazon-linux&amp;lt;/ref&amp;gt;It appears after the OpenSSH-6.6.1p1-31 update, only the user&amp;#039;s pri...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;&amp;lt;ref&amp;gt;http://serverfault.com/questions/816219/sftp-suddenly-failing-for-chroot-accounts-on-amazon-linux&amp;lt;/ref&amp;gt;It appears after the OpenSSH-6.6.1p1-31 update, only the user's primary group is checked for authentication during the SFTP connection attempt. With root and the user's primary group owning the home directory and at least 710 permissions, connection attempts should succeed.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Repro steps:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
$ groups sftpuser  &lt;br /&gt;
sftpuser : sftpgroup sftpuser  &lt;br /&gt;
$ ls -ld /home/sftpuser/  &lt;br /&gt;
drwx--x--- 2 root sftpuser 4096 Nov 22 18:31 sftpuser/  &lt;br /&gt;
$ sftp sftpuser@localhost  &lt;br /&gt;
sftpuser@localhost's password:  &lt;br /&gt;
Write failed: Broken pipe  &lt;br /&gt;
Couldn't read packet: Connection reset by peer  &lt;br /&gt;
$ chgrp sftpgroup sftpuser/  &lt;br /&gt;
$ ls -ld /home/sftpuser/  &lt;br /&gt;
drwx--x--- 2 root sftpgroup 4096 Nov 22 18:31 sftpuser/  &lt;br /&gt;
$ sftp sftpuser@localhost  &lt;br /&gt;
sftpuser@localhost's password:  &lt;br /&gt;
Connected to localhost.  &lt;br /&gt;
sftp&amp;gt; exit  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>Michael.mast</name></author>
		
	</entry>
</feed>