IBM Support

Limiting FTP Users to Their Home Directory

Troubleshooting


Problem

This document provides information about limiting FTP users to their home directory.

Resolving The Problem

In some cases, it is desirable to limit FTP users to the home directory that is configured in their user profile. To enable this functionality on the IBM System i products, do the following:

1.

Download and apply PTF SI27720 (R530) or PTF SI27812 (R540).
2.Prompt the CHGFTPA command. Set the Initial name format to *PATH, and set the Initial directory to *HOMEDIR.
3.The Home Directory parameter in the user profiles must be set to /home/username.
4.Create the following data area based on how you want FTP to function:

Data area . . . . . . . . . . . > QFTPUSERIS Name
Library . . . . . . . . . . . > QUSRSYS Name, *CURLIB
Type . . . . . . . . . . . . . . > *CHAR *DEC, *CHAR, *LGL, *DDM
Length:
Length . . . . . . . . . . . . > 1 1-2000
Decimal positions . . . . . . > 0 0-9
Initial value . . . . . . . . . > '1'

Setting the Initial value to '0' means that no FTP limitations occur.

Setting the Initial value to '1' means that FTP users who have the Home Directory parameter on their user profile set to /home/username are limited to that directory. Users whose profiles have the Home Directory set to another directory, such as QDLS, will be allowed to connect, but no other limitation occurs.

Setting the Value to '2' means that FTP users who have the Home Directory parameter on their user profile set to /home/username are limited to that directory. However, users whose profiles are set to something other than /home/username will not be allowed to log on the FTP server.
5.After you have changed the FTP attributes and created the data area, the FTP server must be ended and restarted to put the changes into effect.

[{"Product":{"code":"SWG60","label":"IBM i"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Component":"Communications-TCP","Platform":[{"code":"PF012","label":"IBM i"}],"Version":"Version Independent","Edition":"","Line of Business":{"code":"LOB57","label":"Power"}}]

Historical Number

454235996

Document Information

Modified date:
18 December 2019

UID

nas8N1014295