1ea022d16SRodney W. Grimes.\" Copyright (c) 1983, 1991, 1993 2ea022d16SRodney W. Grimes.\" The Regents of the University of California. All rights reserved. 3ea022d16SRodney W. Grimes.\" 4ea022d16SRodney W. Grimes.\" Redistribution and use in source and binary forms, with or without 5ea022d16SRodney W. Grimes.\" modification, are permitted provided that the following conditions 6ea022d16SRodney W. Grimes.\" are met: 7ea022d16SRodney W. Grimes.\" 1. Redistributions of source code must retain the above copyright 8ea022d16SRodney W. Grimes.\" notice, this list of conditions and the following disclaimer. 9ea022d16SRodney W. Grimes.\" 2. Redistributions in binary form must reproduce the above copyright 10ea022d16SRodney W. Grimes.\" notice, this list of conditions and the following disclaimer in the 11ea022d16SRodney W. Grimes.\" documentation and/or other materials provided with the distribution. 12ea022d16SRodney W. Grimes.\" 3. All advertising materials mentioning features or use of this software 13ea022d16SRodney W. Grimes.\" must display the following acknowledgement: 14ea022d16SRodney W. Grimes.\" This product includes software developed by the University of 15ea022d16SRodney W. Grimes.\" California, Berkeley and its contributors. 16ea022d16SRodney W. Grimes.\" 4. Neither the name of the University nor the names of its contributors 17ea022d16SRodney W. Grimes.\" may be used to endorse or promote products derived from this software 18ea022d16SRodney W. Grimes.\" without specific prior written permission. 19ea022d16SRodney W. Grimes.\" 20ea022d16SRodney W. Grimes.\" THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 21ea022d16SRodney W. Grimes.\" ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 22ea022d16SRodney W. Grimes.\" IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 23ea022d16SRodney W. Grimes.\" ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 24ea022d16SRodney W. Grimes.\" FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 25ea022d16SRodney W. Grimes.\" DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 26ea022d16SRodney W. Grimes.\" OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 27ea022d16SRodney W. Grimes.\" HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 28ea022d16SRodney W. Grimes.\" LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 29ea022d16SRodney W. Grimes.\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 30ea022d16SRodney W. Grimes.\" SUCH DAMAGE. 31ea022d16SRodney W. Grimes.\" 32ea022d16SRodney W. Grimes.\" @(#)tftpd.8 8.1 (Berkeley) 6/4/93 33229494cbSMike Pritchard.\" $FreeBSD$ 34ea022d16SRodney W. Grimes.\" 3567c31d50SGarrett Wollman.Dd September 14, 2000 36ea022d16SRodney W. Grimes.Dt TFTPD 8 370efe23d6SRuslan Ermilov.Os 38ea022d16SRodney W. Grimes.Sh NAME 39ea022d16SRodney W. Grimes.Nm tftpd 40eb083802SRuslan Ermilov.Nd Internet Trivial File Transfer Protocol server 41ea022d16SRodney W. Grimes.Sh SYNOPSIS 42a8faeabcSPhilippe Charnier.Nm /usr/libexec/tftpd 43eff77877SMatthew N. Dodd.Op Fl cClnw 448ea31785SWarner Losh.Op Fl s Ar directory 45f62eaadfSGarrett Wollman.Op Fl u Ar user 46eff77877SMatthew N. Dodd.Op Fl U Ar umask 47ea022d16SRodney W. Grimes.Op Ar directory ... 48ea022d16SRodney W. Grimes.Sh DESCRIPTION 493f162cb8SPhilippe CharnierThe 503f162cb8SPhilippe Charnier.Nm 513f162cb8SPhilippe Charnierutility is a server which supports the 52ea022d16SRodney W. GrimesInternet Trivial File Transfer 53f62eaadfSGarrett WollmanProtocol 54f62eaadfSGarrett Wollman.Pq Tn RFC 1350 . 55ea022d16SRodney W. GrimesThe 56ea022d16SRodney W. Grimes.Tn TFTP 57ea022d16SRodney W. Grimesserver operates 58ea022d16SRodney W. Grimesat the port indicated in the 59ea022d16SRodney W. Grimes.Ql tftp 60ea022d16SRodney W. Grimesservice description; 61ea022d16SRodney W. Grimessee 62ea022d16SRodney W. Grimes.Xr services 5 . 63ea022d16SRodney W. GrimesThe server is normally started by 64ea022d16SRodney W. Grimes.Xr inetd 8 . 65ea022d16SRodney W. Grimes.Pp 66ea022d16SRodney W. GrimesThe use of 67ea022d16SRodney W. Grimes.Xr tftp 1 68ea022d16SRodney W. Grimesdoes not require an account or password on the remote system. 69ea022d16SRodney W. GrimesDue to the lack of authentication information, 70a8faeabcSPhilippe Charnier.Nm 71ea022d16SRodney W. Grimeswill allow only publicly readable files to be 72ea022d16SRodney W. Grimesaccessed. 7320271f30SWarner LoshFiles containing the string ``/\|\fB.\|.\fP\|/'' or starting with 7420271f30SWarner Losh``\|\fB.\|.\fP\|/'' are not allowed. 75ea022d16SRodney W. GrimesFiles may be written only if they already exist and are publicly writable. 76ea022d16SRodney W. GrimesNote that this extends the concept of 77ea022d16SRodney W. Grimes.Dq public 78ea022d16SRodney W. Grimesto include 79ea022d16SRodney W. Grimesall users on all hosts that can be reached through the network; 80ea022d16SRodney W. Grimesthis may not be appropriate on all systems, and its implications 81ea022d16SRodney W. Grimesshould be considered before enabling tftp service. 82ea022d16SRodney W. GrimesThe server should have the user ID with the lowest possible privilege. 83ea022d16SRodney W. Grimes.Pp 84ea022d16SRodney W. GrimesAccess to files may be restricted by invoking 85a8faeabcSPhilippe Charnier.Nm 86ea022d16SRodney W. Grimeswith a list of directories by including up to 20 pathnames 87ea022d16SRodney W. Grimesas server program arguments in 88ea022d16SRodney W. Grimes.Pa /etc/inetd.conf . 89ea022d16SRodney W. GrimesIn this case access is restricted to files whose 90ea022d16SRodney W. Grimesnames are prefixed by the one of the given directories. 91ea022d16SRodney W. GrimesThe given directories are also treated as a search path for 92ea022d16SRodney W. Grimesrelative filename requests. 93ea022d16SRodney W. Grimes.Pp 94f62eaadfSGarrett WollmanThe 95a8faeabcSPhilippe Charnier.Fl s 96f62eaadfSGarrett Wollmanoption provides additional security by changing 9776081989SRuslan Ermilov.Nm Ns No 's 98f62eaadfSGarrett Wollmanroot directory, thereby prohibiting accesses outside of the specified 99f62eaadfSGarrett Wollman.Ar directory . 100f62eaadfSGarrett WollmanBecause 101f62eaadfSGarrett Wollman.Xr chroot 2 102f62eaadfSGarrett Wollmanrequires super-user privileges, 103a8faeabcSPhilippe Charnier.Nm 104f62eaadfSGarrett Wollmanmust be run as root. 105f62eaadfSGarrett WollmanHowever, after performing the 106f62eaadfSGarrett Wollman.Fn chroot , 107a8faeabcSPhilippe Charnier.Nm 108f62eaadfSGarrett Wollmanwill set its user id to that of the specified 109f62eaadfSGarrett Wollman.Ar user , 110f62eaadfSGarrett Wollmanor 111f62eaadfSGarrett Wollman.Dq nobody 112f62eaadfSGarrett Wollmanif no 113f62eaadfSGarrett Wollman.Fl u 114f62eaadfSGarrett Wollmanoption is specified. 1158ea31785SWarner Losh.Pp 116ea022d16SRodney W. GrimesThe options are: 117ea022d16SRodney W. Grimes.Bl -tag -width Ds 1181ed0e5d2SBill Fumerola.It Fl c 1191ed0e5d2SBill FumerolaChanges the default root directory of a connecting host via chroot based on the 1201ed0e5d2SBill Fumerolaconnecting IP address. 1211ed0e5d2SBill FumerolaThis prevents multiple clients from writing to the same file at the same time. 1221ed0e5d2SBill FumerolaIf the directory does not exist, the client connection is refused. 1231ed0e5d2SBill FumerolaThe 1241ed0e5d2SBill Fumerola.Fl s 1251ed0e5d2SBill Fumerolaoption is required for 1261ed0e5d2SBill Fumerola.Fl c 1271ed0e5d2SBill Fumerolaand the specified 1281ed0e5d2SBill Fumerola.Ar directory 1291ed0e5d2SBill Fumerolais used as a base. 1301ed0e5d2SBill Fumerola.It Fl C 1311ed0e5d2SBill FumerolaOperates the same as 1321ed0e5d2SBill Fumerola.Fl c 1331ed0e5d2SBill Fumerolaexcept it falls back to 1341ed0e5d2SBill Fumerola.Fl s Ns No 's 1351ed0e5d2SBill Fumerola.Ar directory 1361ed0e5d2SBill Fumerolaif a directory does not exist for the client's IP. 137ea022d16SRodney W. Grimes.It Fl l 138a8faeabcSPhilippe CharnierLog all requests using 1393dead0b6SJoseph Koshy.Xr syslog 3 140f62eaadfSGarrett Wollmanwith the facility of 141f62eaadfSGarrett Wollman.Dv LOG_FTP . 142f62eaadfSGarrett WollmanNote: Logging of 143f62eaadfSGarrett Wollman.Dv LOG_FTP 144f62eaadfSGarrett Wollmanmessages 145f62eaadfSGarrett Wollmanmust also be enabled in the syslog configuration file, 1463dead0b6SJoseph Koshy.Xr syslog.conf 5 . 147ea022d16SRodney W. Grimes.It Fl n 148a8faeabcSPhilippe CharnierSuppress negative acknowledgement of requests for nonexistent 149ea022d16SRodney W. Grimesrelative filenames. 1508ea31785SWarner Losh.It Fl s Ar directory 151a8faeabcSPhilippe CharnierCause 152a8faeabcSPhilippe Charnier.Nm 153f62eaadfSGarrett Wollmanto change its root directory to 154f62eaadfSGarrett Wollman.Pa directory . 155f62eaadfSGarrett WollmanAfter changing roots but before accepting commands, 156a8faeabcSPhilippe Charnier.Nm 157f62eaadfSGarrett Wollmanwill switch credentials to an unprivileged user. 158f62eaadfSGarrett Wollman.It Fl u Ar user 159f62eaadfSGarrett WollmanSwitch credentials to 160f62eaadfSGarrett Wollman.Ar user 161f62eaadfSGarrett Wollman(default 162f62eaadfSGarrett Wollman.Dq nobody ) 163f62eaadfSGarrett Wollmanwhen the 164f62eaadfSGarrett Wollman.Fl s 165f62eaadfSGarrett Wollmanoption is used. 166f62eaadfSGarrett WollmanThe user must be specified by name, not a numeric UID. 167eff77877SMatthew N. Dodd.It Fl U Ar umask 168eff77877SMatthew N. DoddSet the 169eff77877SMatthew N. Dodd.Ar umask 170eff77877SMatthew N. Doddfor newly created files. The default is 022 (S_IWGRP|S_IWOTH). 171eff77877SMatthew N. Dodd.It Fl w 172eff77877SMatthew N. DoddAllow writes requests to create new files. By default 173eff77877SMatthew N. Dodd.Nm 174eff77877SMatthew N. Doddrequires that the file specified in a write request exist. 175ea022d16SRodney W. Grimes.El 176ea022d16SRodney W. Grimes.Sh SEE ALSO 177ea022d16SRodney W. Grimes.Xr tftp 1 , 178f62eaadfSGarrett Wollman.Xr chroot 2 , 1793dead0b6SJoseph Koshy.Xr inetd 8 , 1803dead0b6SJoseph Koshy.Xr syslogd 8 181f62eaadfSGarrett Wollman.Rs 182f62eaadfSGarrett Wollman.%A K. R. Sollins 183f62eaadfSGarrett Wollman.%T The TFTP Protocol (Revision 2) 184f62eaadfSGarrett Wollman.%D July 1992 185f62eaadfSGarrett Wollman.%O RFC 1350, STD 33 186f62eaadfSGarrett Wollman.Re 187ea022d16SRodney W. Grimes.Sh HISTORY 188ea022d16SRodney W. GrimesThe 189ea022d16SRodney W. Grimes.Nm 1903f162cb8SPhilippe Charnierutility appeared in 19167c31d50SGarrett Wollman.Bx 4.2 ; 19267c31d50SGarrett Wollmanthe 19367c31d50SGarrett Wollman.Fl s 19467c31d50SGarrett Wollmanoption was introduced in 19567c31d50SGarrett Wollman.Fx 2.2 , 1961ed0e5d2SBill Fumerolathe 19767c31d50SGarrett Wollman.Fl u 19867c31d50SGarrett Wollmanoption was introduced in 1991ed0e5d2SBill Fumerola.Fx 4.2 , 2001ed0e5d2SBill Fumerolaand the 2011ed0e5d2SBill Fumerola.Fl c 2021ed0e5d2SBill Fumerolaoption was introduced in 203276c4a5dSKris Kennaway.Fx 4.3 . 20467034ac6SJeroen Ruigrok van der Werven.Sh BUGS 20567034ac6SJeroen Ruigrok van der WervenFiles larger than 33488896 octets (65535 blocks) cannot be transferred 20667034ac6SJeroen Ruigrok van der Wervenwithout client and server supporting blocksize negotiation (RFC1783). 20767034ac6SJeroen Ruigrok van der Werven.Pp 20867034ac6SJeroen Ruigrok van der WervenMany tftp clients will not transfer files over 16744448 octets (32767 blocks). 209