user-access/README.md

50 lines
978 B
Markdown
Raw Normal View History

2017-06-13 13:36:25 +00:00
File access with [ProFTPD](http://www.proftpd.org/) over sftp and ldap authentication.
2016-10-31 17:53:00 +00:00
# Volumes
- `/var/lib/proftp/data`: root directory for files
2017-06-13 13:36:25 +00:00
- `/var/lib/proftp/keys`: ssh key files
2016-10-31 17:53:00 +00:00
# Environment Variables
## SERVER_NAME
Name displayed to connecting users.
## LDAP_URI
Full ldap uri with search qualifier.
For example: `ldap://ldap:389/??sub`
## LDAP_BASE
Base DN for ldap searches.
## LDAP_FILTER
Ldap [filter](http://www.proftpd.org/docs/directives/linked/config_ref_LDAPUsers.html) to find valid users.
`%u` is replaced with the username.
## LDAP_BIND_DN
DN to use when connecting to the ldap host.
## LDAP_BIND_PASSWORD
Password to use when connecting to the ldap host.
## LDAP_USE_TLS
- default: on
Whether to use tls when connecting to the ldap host.
## LDAP_USE_AUTH_BIND
- default: on
Whether to use auth bind with ldap.
# Ports
2017-06-13 13:36:25 +00:00
- 22
2016-10-31 17:53:00 +00:00
- All ports in the defined bounds
## Capabilities
- DAC_OVERRIDE
- NET_BIND_SERVICE
- SETGID
- SETUID
2016-10-31 19:45:16 +00:00
- SYS_CHROOT