Facebook Twitter Instagram
    TecAdmin
    • Home
    • Ubuntu 20.04
      • Upgrade Ubuntu
      • Install Java
      • Install Node.js
      • Install Docker
      • Install LAMP Stack
    • Tutorials
      • AWS
      • Shell Scripting
      • Docker
      • Git
      • MongoDB
    • FeedBack
    • Submit Article
    • About Us
    Facebook Twitter Instagram
    TecAdmin
    Home»Network Services»SSH»How to Create SFTP User without Shell Access on CentOS/RHEL 7

    How to Create SFTP User without Shell Access on CentOS/RHEL 7

    RahulBy RahulJanuary 15, 20192 Mins ReadUpdated:May 6, 2020

    This tutorial will help you to create SFTP only user (without ssh access) on CentOS and RedHat systems. The user can connect the server with SFTP access only and allowed to access the specified directory. Users can’t SSH into the server. Follow the below tutorial to create sftp only account.

    Step 1 – Create Account

    First of all, create a user account to use for sftp access. Below command will create user named sftpuser with no shell access.

    sudo adduser --shell /bin/false sftpuser
    sudo passwd sftpuser
    

    Step 2 – Create Directory

    Now, create the directory structure to be accessible by sftp user.

    sudo mkdir -p /var/sftp/files
    

    Change the ownership of the files directory to sftp user. So that the sftpuser can read and write on this directory.

    sudo chown sftpuser:sftpuser /var/sftp/files
    

    And set the owner and group owner of the /var/sftp to root. The root user has read/write access on this access. Group members and other accounts have only read and execute permissions.

    sudo chown root:root /var/sftp
    sudo chmod 755 /var/sftp
    

    Step 3 – Configure SSH for SFTP

    Now edit the SSH configuration file in a text editor

    sudo vim /etc/ssh/sshd_config
    

    and add the following settings at end of file.

    Match User sftpuser
    	ForceCommand internal-sftp
    	PasswordAuthentication yes
    	ChrootDirectory /var/sftp
    	PermitTunnel no
    	AllowAgentForwarding no
    	AllowTcpForwarding no
    	X11Forwarding no
    

    Save the configuration and restart SSH service to apply changes.

    sudo systemctl restart sshd.service
    

    Step 4 – Test SFTP Connection

    I am using FileZilla for the connection to the SFTP instance from my Windows systems. Linux desktop users can also use Filezilla for connection.

    For the Linux server, users can use sftp command-line utility to connect to remote sftp instance.

    sftp [email protected]
    
    Connecting to sftp.tecadmin.net...
    [email protected]'s password:
    sftp>
    

    Connect with FileZilla:

    As this account is configured for SFTP only connection. So if any user tried to connect via SSH will be disconnected immediately after successful authentication. User will get below message:

    ssh [email protected]
    
    [email protected]'s password:
    This service allows sftp connections only.
    Connection to sftp.tecadmin.net closed.
    
    CentOS 7 SFTP user
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email WhatsApp
    Previous ArticleHow to Install Ionic Framework on Linux Mint 19/18
    Next Article How To Install Docker on Fedora 35/34/33

    Related Posts

    (Resolved) userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms

    Updated:May 10, 20221 Min Read

    How to Create SFTP Only User in Debian 11

    Updated:September 26, 20214 Mins Read

    How to Use SSH Config File

    5 Mins Read

    How To Change MySQL User Password

    2 Mins Read

    How to Set Up Passwordless SSH login

    4 Mins Read

    How To Setup FTP Server with VSFTPD on Ubuntu 20.04

    Updated:July 15, 20215 Mins Read

    2 Comments

    1. chetan on July 6, 2021 11:38 am

      Hello Sir,

      I we add lot of users in SFTP then what is the bash script should use.

      Reply
    2. ShuBin Li on September 17, 2020 3:46 am

      thanks
      I use this way to add my own user for sftp

      Reply

    Leave A Reply Cancel Reply

    Recent Posts
    • How to Enable / disable Firewall in Windows
    • How to Install JAVA on Ubuntu 22.04
    • Switching Display Manager in Ubuntu – GDM, LightDM & SDDM
    • Changing the Login Screen Background in Ubuntu 22.04 & 20.04
    • How To Install PHP (8.1, 7.4 or 5.6) on Ubuntu 22.04
    Facebook Twitter Instagram Pinterest
    © 2022 Tecadmin.net. All Rights Reserved | Terms  | Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.