• 软件测试技术
  • 软件测试博客
  • 软件测试视频
  • 开源软件测试技术
  • 软件测试论坛
  • 软件测试沙龙
  • 软件测试资料下载
  • 软件测试杂志
  • 软件测试人才招聘
    暂时没有公告

字号: | 推荐给好友 上一篇 | 下一篇

RFC697 - CWD command of FTP

发布: 2007-6-23 14:09 | 作者:   | 来源:   | 查看: 22次 | 进入软件测试论坛讨论

领测软件测试网

   
  Network Working Group Jim Lieb
RFC# 697 SUMEX-AIM
NIC # 32963 July 14, 1975

CWD Command of FTP

Introduction

The Tenex file system support a "files only" directory. This type of

directory cannot be "logged in" but it can be "connected to". A login
gives directory "owner" access to the job generated by the system and an
address space in which the user can execute programs. A connect allows
an existing job and its associated user "owner" access to a directory
but creates no address space. The words "owner", "group", and
"universal" or "public" determine which field of the protection
specification is to be used to check the legality of a file access
request.

Problem

The Tenex FTP server does not allow an FTP Login to a "files only"
directory. The current protocol contains the CWD (Change Working
Directory) command which gets part of the "connect" functions but it
does not grant "owner" access to the user. Therefore, there is no way a
user can access a "files only" directory as the "owner" (i.e. he can
supply the password). This is undesirable for private directories of
this type since it is uneconomical to define a user - directory "group"
for so few directories and unrestricted "public" access may be
undesirable.

Solution

There are two approach we can take. Either we remove the distinction
"files only" from the FTP login, or we create a command that does the
"connect" function. The restriction placed on "files only" directories
is based on how we define a user of FTP to the server. If we say that
any net user who knows the password to a directory has ownership of that
directory as far as FTP is concerned, then we have a solution. If we
want an FTP login to be as restrictive as a user login, then we need the
second alternative.

Proposal

Change the protocol in one of the following ways:

1. Remove the restriction on "files only" directories for FTP logins or

2. Add an optional argument to the CWD (Change Working Directory)
command to specify the password string for the directory. If the
password check is successful the user is granted ownership rights to
that directory. If the password is not present or the check fails,
the command functions as it presently does and access is controlled
by the current protection mechanism. Anonymous users should not be
allowed to use this mechanism to change their access to the file
system.

[ This RFCwas put into machine readable form for entry ]
[ into the online RFCarchives by Alex McKenzie with ]
[ support from GTE, formerly BBN Corp. 10/99 ]

延伸阅读

文章来源于领测软件测试网 https://www.ltesting.net/


关于领测软件测试网 | 领测软件测试网合作伙伴 | 广告服务 | 投稿指南 | 联系我们 | 网站地图 | 友情链接
版权所有(C) 2003-2010 TestAge(领测软件测试网)|领测国际科技(北京)有限公司|软件测试工程师培训网 All Rights Reserved
北京市海淀区中关村南大街9号北京理工科技大厦1402室 京ICP备10010545号-5
技术支持和业务联系:info@testage.com.cn 电话:010-51297073

软件测试 | 领测国际ISTQBISTQB官网TMMiTMMi认证国际软件测试工程师认证领测软件测试网