Tuesday, October 11, 2016

security - vsftp: why is allow_writeable_chroot=YES a bad idea?

There are several thousand blog posts about vsftp and allow_writeable_chroot=YES



The common error message:




Fixing 500 OOPS: vsftpd: refusing to run with writable root inside chroot ()





I solved the problem on my server.



But one question remains:



Why is it advisable to use allow_writeable_chroot=NO?



Up to now I only found nebulous arguments like "For security reasons".



What are these "security reasons"?

No comments:

Post a Comment