The method we use is to provide each "private" user with a separate ftp
account with its own chroot environment and restrict the IP addresses which
can access that account. We use the wuftpd. We also drop source routed
packets to prevent IP address spoofing. It ain't perfect, but it seems to
have worked so far.
Al
---------------------------------------------------------------------------
Alastair Young _ Ariel NH
Cadence Design Systems, Information Services )/___ _ Red Hunter
555 River Oaks Parkway, 4B1 __/(___)_*##/c
San Jose CA 95134 Fax: (408)894-3487 / /\\|| \ / \ Brakes'n'lites
alastair @
cadence .
com (408)428-5278 \__/ ----'\__/ novel eh?
---------------------------------------------------------------------------
These statements and opinions are mine, not those of Cadence Design Systems
|
|