47.16. Limiting Who Can Log In

By default, Usermin lets any UNIX user on your system log in—even root. If this is not what you want, it can be configured to allow or deny access by only certain users or the members of certain groups. This can be useful if many users on your system exist only to receive and download email or upload files with FTP, or if you want to deny root access. It is also possible to prevent users from logging in if they do not have a shell in a certain file, just as most FTP servers do.

To control who can log in to Usermin, follow these steps:

1.
Click on the Allowed Users and Groups icon on the module's main page.

2.
To give only certain users access, select Only allow listed users and fill in the text box with a list of user and group names. Groups must be prefixed with an @ (such as @users), and match whether the user attempting to log in is a primary or secondary member.

Alternately, you can allow everyone except certain users by selecting Deny listed users and entering the user and group names you want to block.

3.
The WU-FTPD and ProFTPD servers deny access to any user whose shell is not listed in the /etc/shells file so you can create users who cannot make FTP logins. Usermin can be configured to do the same thing by checking the Deny users whose shells are not in file and entering /etc/shells into the adjacent text field.

4.
Hit the Save button to activate the new restrictions. They will not, however, affect users who are already logged in.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.225.55.151