|
Á¦ ¸ñ : ssh¸¦ ÀÌ¿ëÇÑ vsftpd
ÀÛ¼ºÀÚ : ÁÁÀºÁøÈ£(truefeel, http://coffeenix.net/ )
ÀÛ¼ºÀÏ : 2003.10.13(¿ù)
FTP´Â ¾ÏȣȵÇÁö ¾ÊÀº ÇüÅ·ΠÀÎÁõ°úÁ¤°ú ÆÄÀÏÀÌ Àü¼ÛÀÌ ÀÌ·ïÁø´Ù. ÀÌ´Â Àü¼ÛµÇ´Â Áß°£¿¡ ½º´ÏÇÎÀÌ
ÀÌ·ïÁø´Ù¸é °í½º¶õÈ÷ ÇØÄ¿(?)ÀÇ ¼Õ¿¡ ID/PW, Àü¼Û ÆÄÀÏÀÌ À¯ÃâµÉ ¼öµµ ÀÖÀ½À» ÀǹÌÇÑ´Ù.
À̱ۿ¡¼´Â º¸´Ù ¾ÈÀüÇÏ°Ô ssh ÅͳθµÀ» ÅëÇÑ FTP Àü¼Û°ú vsftpd ¼³Á¤¿¡ ´ëÇØ ¼Ò°³ÇÑ´Ù.
1. ssh Åͳθµ ¸¸µé±â
* ÇÊ¿äÇÑ Á¶°Ç
- FTP ¼¹ö¿¡¼´Â ssh ¼¹ö°¡ µ¿ÀÛÁßÀ̾î¾ß ÇÑ´Ù. (¼¹ö¸íÀ» free, ID´Â truefeel À̶ó°í °¡Á¤)
- client¿¡¼´Â ssh Ŭ¶óÀ̾ðÆ®°¡ ÀÖ¾î¾ß ÇÑ´Ù.
¿¬°á°úÁ¤À» ±×·¯º¸¸é.
·ÎÄÃÀÇ FTPŬ¶ó¾ðÆ® -> ssh Ŭ¶óÀ̾ðÆ® -> ³×Æ®¿öÅ©(¾ÏÈ£È Àü¼Û) -> ssh ¼¹ö -> FTP ¼¹ö
[ SSH Åͳθµ. À̹ÌÁö´Â www-cs.stanford.edu/security/ ¿¡¼ ]
ÅͳθµÀ» ¸¸µé¾îº¸ÀÚ!
# ssh -CNf -L10021:free:21 truefeel@free
-C : ¾ÐÃàÇؼ Àü¼ÛÇÑ´Ù.
-N : ¸í·É¾î ½ÇÇà¾øÀÌ ½ÃÀÛÇÑ´Ù.
-f : ¹é±×¶ó¿îµå·Î ½ÇÇàÇÑ´Ù.
-L : ¿ø°Ý¼¹öÀÇ Æ÷Æ®¸¦ ·ÎÄ÷ΠÆ÷¿öµùÇÑ´Ù. (Áï, ÅͳθµÀ» ¸¸µé¾îÁÜ)
free¼¹öÀÇ FTP(21¹ø Æ÷Æ®)¸¦ ·ÎÄÃÀÇ 10021¹ø Æ÷Æ®·Î Æ÷¿öµùÇÑ´Ù. Áï ·ÎÄÃÀÇ 10021¹ø Æ÷Æ®¸¦ ÅëÇØ
freeÀÇ FTP¼¹ö¿¡ Á¢¼ÓÇÒ ¼ö ÀÖ´Ù. ÀÌ ¶§ ¿ø°Ý³¢¸®´Â ¾ÏȣȵǾî Àü¼ÛµÈ´Ù.
¸¸¾à ¿ø°ÝÀÇ ssh¼¹ö°¡ ´Ù¸¥ Æ÷Æ®¸¦ »ç¿ëÇÑ´Ù¸é -p [Æ÷Æ®] ¿É¼Ê±îÁö µÚ¿¡ ºÙ¿©ÁÖ¸é µÈ´Ù.
ps aux Çϸé ssh°¡ ¹é±×¶ó¿îµå·Î ¶°ÀÖ´Â °ÍÀ» È®ÀÎÇÒ ¼ö ÀÖ´Ù.
2. ftp Á¢¼Ó ¹× vsftpd ¼³Á¤
ftp¸í·ÉÀ¸·Î ·ÎÄÃÀÇ 10021¹øÀ¸·Î Á¢¼ÓÀ» ÇÏ¸é ¿ø°ÝÀÇ free FTP¼¹ö·Î Á¢¼ÓÇÏ°Ô µÈ´Ù.
|
$ ftp -p localhost 10021
Connected to localhost (127.0.0.1).
220 Secure FTP ¼¹ö
Name (localhost:truefeel): truefeel
331 Please specify the password.
Password:
230 Login successful.
Remote system type is UNIX.
Using binary mode to transfer files.
ftp> ls
227 Entering Passive Mode (xxx,xxx,xxx,xxx,80,250)
425 Security: Bad IP connecting.
ftp>
| |
Á¢¼ÓÀº Á¤»óÀûÀ¸·Î ÀÌ·ïÁ³´Âµ¥, ¸í·É¾î¸¦ ÀÔ·ÂÇß´õ´Ï 'Security: Bad IP connecting.'¿¡·¯°¡
¹ß»ýÀ» Çß´Ù. /etc/vsftpd.conf¿¡ ´ÙÀ½ ÇÑ ÁÙÀ» Ãß°¡ÇÏ¸é ½±°Ô ÇØ°áÇÒ ¼ö ÀÖ´Ù.
pasv_promiscuous=YES
* Âü°íÀÚ·á
- ssh ¸ÇÆäÀÌÁö
- Re: hello and a vsftpd configuration problem for FTP tunnelling
http://shoe.bocks.com/nlug/2003-Jun/3022.html
|