{"id":2460,"date":"2020-04-20T19:56:32","date_gmt":"2020-04-20T10:56:32","guid":{"rendered":"https:\/\/www.oji-koji.com\/?p=2460"},"modified":"2020-04-20T19:56:32","modified_gmt":"2020-04-20T10:56:32","slug":"linux%e3%83%ab%e3%83%bc%e3%83%88%e3%83%87%e3%82%a3%e3%83%ac%e3%82%af%e3%83%88%e3%83%aa%e3%81%ae%e5%a4%89%e6%9b%b4%e8%a4%87%e6%95%b0%e3%81%a7%e5%85%b1%e7%94%a8ssh%e3%81%99%e3%82%8b%e3%81%9f%e3%82%81","status":"publish","type":"post","link":"https:\/\/www.oji-koji.com\/?p=2460","title":{"rendered":"Linux\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306e\u5909\u66f4(\u8907\u6570\u3067\u5171\u7528(ssh)\u3059\u308b\u305f\u3081\u306b)"},"content":{"rendered":"\n<p class=\"program_discription\">\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306e\u30d7\u30e9\u30b0\u30e9\u30e0\u3092\u5b66\u7fd2\u3059\u308b\u8b1b\u7fa9\u3067Linux\u306b\u3064\u3044\u3066\u306f\u672c\u6765\u306a\u3089\u5404\u5b66\u751f\u304c<br>RaspberryPi\u3092\u5165\u624b\u3059\u308b\u306e\u3067\u3059\u304c\u3001\u30b3\u30ed\u30ca\u30a6\u30a4\u30eb\u30b9\u5bfe\u5fdc\u306e\u305f\u3081\u3001\u9060\u9694\u8b1b\u7fa9\u306b\u306a\u308a\u3001<br>\u307e\u3060RaspberryPi\u3092\u5b66\u751f\u304c\u5165\u624b\u3067\u304d\u3066\u3044\u307e\u305b\u3093\u3002<br>\u305d\u3053\u3067\u3001\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u4e0a\u306eLinux\u3092\u5b66\u751f\u306b\u4f7f\u3063\u3066\u3082\u3089\u3046\u3053\u3068\u306b\u3057\u307e\u3057\u305f\u304c\u3001<br>\u30e6\u30fc\u30b6\u3092\u5358\u306b\u8ffd\u52a0\u3057\u305f\u3060\u3051\u3067\u306f\u3001\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u304c\u898b\u3048\u305f\u308a\u3059\u308b\u306e\u3067<br>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u4e0a\u554f\u984c\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n\n\n\n<p class=\"program_discription\">\u3053\u308c\u306f\u3001\u30ea\u30e2\u30fc\u30c8\u30ef\u30fc\u30af\u3067\u4e00\u3064\u306eLinux\u3092\u5171\u6709\u3059\u308b\u5834\u5408\u306b\u3082\u304a\u3053\u308b\u554f\u984c\u3060\u3068\u601d\u3044<br><strong>\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u5909\u66f4\u3059\u308b\u624b\u9806<\/strong>\u3092\u307e\u3068\u3081\u3066\u307f\u307e\u3057\u305f\u3002<br>\u5404\u30e6\u30fc\u30b6\u306b\u5bfe\u3057\u3066sshd_config\u306b\u8a18\u8ff0\u3059\u308b\u306e\u306f\u9762\u5012\u306a\u306e\u3067<strong>\u30b0\u30eb\u30fc\u30d7\u3067\u8a18\u8ff0<\/strong>\u3057\u3066\u307f\u307e\u3057\u305f\u3002<\/p>\n\n\n\n<p class=\"program_discription\">CentOS\u3067\u306e\u8a2d\u5b9a\u3067\u3059\u304c\u3001RaspberryPi\u306a\u3069\u3067\u3082\u540c\u69d8\u306b\u3067\u304d\u308b\u3068\u601d\u3044\u307e\u3059\u3002<br>\u3084\u308b\u3053\u3068\u306f\u3001KCG\u306e\u5b66\u751f\u306e\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\/home\/KCG\u306b\u5909\u66f4\u3059\u308b\u3053\u3068\u3067\u3059\u3002<br>\u3000\u3064\u307e\u308a\u3053\u306e\u4e0b\u306b\u5404\u5b66\u751f\u306e\u30db\u30fc\u30e0\u30c7\u30a3\u30ec\u30af\u30c8\u30ea(\/home\/\u5404\u5b66\u751fID)\u3092\u69cb\u7bc9\u3059\u308b\u3088\u3046\u306b<br>\u3000\u3057\u307e\u3059\u3002<br>\u3000\u4ee5\u4e0b\u306e\u64cd\u4f5c\u306f\u3001\u7ba1\u7406\u8005(sudo)\u306b\u306a\u3063\u3066\u3084\u308b\u306e\u304c\u697d\u3067\u3059<\/p>\n\n\n\n<p class=\"program_discription\"><strong>1.KCG\u306e\u5b66\u751f\u7528\u30b0\u30eb\u30fc\u30d7\u306e\u4f5c\u6210<\/strong><br>\u3000\u3000groupadd KCG<br>\u3000\u3000mkdir \/home\/KCG<br>\u3000\u3000mkdir \/home\/KCG\/home<br><strong>2.\u30e6\u30fc\u30b6\u306e\u8ffd\u52a0<\/strong><br>\u3000\u30e6\u30fc\u30b6\u4f5c\u6210\u6642\u306b\u30db\u30fc\u30e0\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u4f5c\u6210\u3057\u307e\u3059\u3002<br>\u3000\u3000useradd -m -d \/home\/KCG\/home\/\u5404\u5b66\u751fID \u5404\u5b66\u751fID<br><strong>3.\u30b0\u30eb\u30fc\u30d7\u3078\u306e\u6240\u5c5e<\/strong><br>\u3000\u3000usermod -aG KCG \u5404\u5b66\u751fID<br><strong>4.\u30d1\u30b9\u30ef\u30fc\u30c9\u8a2d\u5b9a<\/strong><br>\u3000\u3000passwd \u5404\u5b66\u751fID<br><strong>5.\u5fc5\u8981\u306a\u30d5\u30a1\u30a4\u30eb\u306e\u30b3\u30d4\u30fc<\/strong><br>\u3000\u3000\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u5909\u66f4\u5f8c\u3001ssh\u3092\u4f7f\u7528\u3067\u304d\u308b\u3088\u3046\u306b\u3059\u308b\u305f\u3081\u306b\u3001\u5404\u30b3\u30de\u30f3\u30c9\u306e<br> \u3000\u5b9f\u884c\u30d5\u30a1\u30a4\u30eb\u30fb\u95a2\u9023\u30d5\u30a1\u30a4\u30eb\u3092\u5909\u66f4\u5f8c\u306e\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u914d\u4e0b\u306b\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002<br> \u3000\u53d6\u308a\u5408\u3048\u305a\u3053\u306e\u3042\u305f\u308a\u3067\u3001\u8db3\u308a\u306a\u3051\u308c\u3070\u8ffd\u52a0\uff08\u4e0b\u3067\u30c1\u30a7\u30c3\u30af\u3057\u3066\u307e\u3059\uff09\u3057\u307e\u3057\u3087\u3046\u3002<br>\u3000\u3000cd \/home\/KCG<br>\u3000\u3000cp -p -r \/bin \/home\/KCG\/bin<br>\u3000\u3000cp -p -r \/lib \/home\/KCG\/lib<br>\u3000\u3000cp -p -r \/lib64 \/home\/KCG\/lib64<br>\u3000\u3000mkdir usr<br>\u3000\u3000cp -p -r \/usr\/bin \/home\/KCG\/usr\/bin <br>\u3000\u3000cp -p -r \/usr\/lib \/home\/KCG\/usr\/lib<br>\u3000\u3000cp -p -r \/usr\/lib64 \/home\/KCG\/usr\/lib64<br><strong>6.\u5909\u66f4\u5f8c\u306e\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306e\u5c5e\u6027\u5909\u66f4<\/strong><br>\u3000\u3000\u5909\u66f4\u5f8c\u306e\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306e\u6240\u6709\u8005root\u306b\u3057\u307e\u3059\u3002<br>\u3000\u3000\u5c5e\u6027\u3082755\u306b\u5909\u66f4\u3057\u307e\u3059\u3002<br>\u3000\u3000chown root:root \/home\/KCG<br>\u3000\u3000chmod 755 \/home\/KCG<br><strong>7.\u52d5\u4f5c\u78ba\u8a8d<\/strong><br>\u3000\u3000\u5fc5\u8981\u306a\u30b3\u30de\u30f3\u30c9(\u30b7\u30a7\u30eb)\u304c\u52d5\u4f5c\u3059\u308b\u30c1\u30a7\u30c3\u30af\u306e\u305f\u3081\u306b\u30eb\u30fc\u30c8\u3092\u5909\u66f4\u3057\u3066\u307f\u307e\u3059\u3002<br>\u3000\u3000chroot \/home\/KCG<br>\u3000\u3000\u30c1\u30a7\u30c3\u30af\u304c\u7d42\u308f\u3063\u305f\u3089\u623b\u3057\u307e\u3059<br>\u3000\u3000exit<br>\u3000\u3000\uff08\uff0a\uff09\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u306e\u8868\u793a\u306b\u3064\u3044\u3066\u306f\u5f8c\u8ff0\u3057\u307e\u3059<\/p>\n\n\n\n<p class=\"program_discription\">\u4e0a\u624b\u304f\u52d5\u304b\u306a\u3044\u3068\u304d\u306f\u3001\u30b3\u30d4\u30fc\u3057\u305f\u30e2\u30b8\u30e5\u30fc\u30eb\u304c\u8db3\u308a\u306a\u3068\u601d\u3044\u307e\u3059\u306e\u3067<br>\u30b3\u30d4\u30fc\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n\n\n\n<p class=\"program_discription\"><strong>8.\u30ed\u30b0\u30a4\u30f3\u30b0\u30eb\u30fc\u30d7\u306b\u5bfe\u3059\u308b\u30eb\u30fc\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306e\u5909\u66f4<\/strong><br>\u3000\u3000\u30ed\u30b0\u30a4\u30f3\u3059\u308b\u30e6\u30fc\u30b6\u306e\u30b0\u30eb\u30fc\u30d7\u306b\u5bfe\u3057\u3066\u30eb\u30fc\u30c8\u3092\u5909\u66f4\u3059\u308b\u3088\u3046\u306b<br>\u3000\u3000\/etc\/ssh\/sshd_config\u306b\u8ffd\u8a18\u3057\u307e\u3059<br>\u3000\u3000<strong>Match Group KCG<\/strong><br>\u3000\u3000   <strong>ChrootDirectory \/home\/KCG<\/strong><br>\u3000sshd\u3092\u518d\u8d77\u52d5\u3057\u307e\u3059\u3002<br><strong>9.\u5404\u30e6\u30fc\u30b6\u306e\u30db\u30fc\u30e0\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u5909\u66f4<\/strong><br>\u3000\u3000usermod -d \/home\/\u5404\u5b66\u751fID \u5404\u5b66\u751fID<br>\u3000\u3000\u3053\u308c\u3067\u3001\/home\/KCG\/home\/\u5404\u5b66\u751fID \u306b\u4f5c\u3063\u305f\u30db\u30fc\u30e0\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u304c<br>\u3000\u3000\u30e6\u30fc\u30b6\u306b\u306f\u3001\/home\/\u5404\u5b66\u751fID\u3068\u898b\u3048\u307e\u3059\u3002<\/p>\n\n\n\n<p class=\"program_discription\">\u4f5c\u6210\u3057\u305f\u30e6\u30fc\u30b6\u3067\u30ed\u30b0\u30a4\u30f3\u3057\u3066\u78ba\u8a8d\u3092\u3057\u307e\u3059\u3002<br>\u3000\u3000pwd\u3067\u30ab\u30ec\u30f3\u30c8\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u8868\u793a\u3059\u308b\u3068\/home\/\u5404\u5b66\u751fID<br>\u3000\u3000(\u5b9f\u4f53\u306f\/home\/KCG\/home\/\u5404\u5b66\u751fID)\u304c\u8868\u793a\u3055\u308c\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3067\u304d\u307e\u3059\u3002<br>\u3000\u3000cd \/ \u3067\u30eb\u30fc\u30c8(\u5b9f\u4f53\u306f\/home\/KCG)\u3078\u79fb\u52d5\u3059\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3067\u304d\u307e\u3059\u3002<br>\u3000\u3000cd ~ \u3067\u30db\u30fc\u30e0(\u5b9f\u969b\u306b\u306f\/home\/KCG\/home\/\u5404\u5b66\u751fID)\u3078\u79fb\u52d5\u3059\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3067\u304d\u307e\u3059\u3002<\/p>\n\n\n\n<p class=\"program_discription\"><strong>\u88dc\u8db3\uff08\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u306e\u5909\u66f4\uff09<\/strong><br>\u3000\u3000\u3053\u3053\u307e\u3067\u306e\u5bfe\u5fdc\u3067\u306f\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u304c-bash-4.2$\u306a\u3069\u3068\u306a\u308a\u307e\u3059\u3002<br>\u3000\u3000cp -p -r \/etc\/bashrc \/home\/KCG\/etc\/<br>\u3000\u3000\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002\u3053\u308c\u3060\u3051\u3067\u306f\u30e6\u30fc\u30b6\u540d\u304c\u3067\u306a\u3044\u306e\u3067\u30e6\u30fc\u30b6\u3092\u8ffd\u52a0\u5f8c\u306epasswd\u3092<br>\u3000\u3000\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002<br>\u3000\u3000cp -p -r \/etc\/passwd \/home\/KCG\/etc\/<br>\u3000\u3000\u3053\u308c\u3067\u30d7\u30ed\u30f3\u30d7\u30c8\u306f\u3044\u3064\u3082\u306e\u3082\u306e\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306e\u30d7\u30e9\u30b0\u30e9\u30e0\u3092\u5b66\u7fd2\u3059\u308b\u8b1b\u7fa9\u3067Linux\u306b\u3064\u3044\u3066\u306f\u672c\u6765\u306a\u3089\u5404\u5b66\u751f\u304cRaspberryPi\u3092\u5165\u624b\u3059\u308b\u306e\u3067\u3059\u304c\u3001\u30b3\u30ed\u30ca\u30a6\u30a4\u30eb\u30b9\u5bfe\u5fdc\u306e\u305f\u3081\u3001\u9060\u9694\u8b1b\u7fa9\u306b\u306a\u308a\u3001\u307e\u3060RaspberryPi\u3092\u5b66\u751f\u304c\u5165\u624b\u3067\u304d\u3066\u3044\u307e\u305b\u3093\u3002\u305d\u3053\u3067 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_locale":"","_original_post":"","footnotes":""},"categories":[3],"tags":[],"class_list":["post-2460","post","type-post","status-publish","format-standard","hentry","category-monolog","ja"],"_links":{"self":[{"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/posts\/2460","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2460"}],"version-history":[{"count":3,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/posts\/2460\/revisions"}],"predecessor-version":[{"id":2463,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=\/wp\/v2\/posts\/2460\/revisions\/2463"}],"wp:attachment":[{"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2460"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2460"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.oji-koji.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2460"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}