customer requesting rar zipper/unzipper

tom11011

Member
Apr 19, 2009
21
0
51
I have a customer who is requesting rar access.

I am a little leary of installing the package for the whole server. This customer has jail shell access. Is there a stand alone rar executable he could use without having to install something server wide?

Thanks in advance.
 

Spiral

BANNED
Jun 24, 2005
2,018
8
193
I hope you are already fully aware of the extreme dangers of granting any shell access including jailshell access? I am making an extra effort to point this out as 'rar' is one of the "preferred" compression formats used commonly by hackers, pirates, and script kiddies and though this may or may not be the case whenever anyone uses the words "SSH" and "rar" in the same paragraph, I tend to get a little nervous on that one.

The above said, installing "rar" support is just a simple matter of downloading
the source with wget and compiling it and is pretty much a "no-brainer".

Here is a fairly good article on the subject so I won't re-invent the wheel:

Open rar file or Extract rar files under Linux or UNIX
 

ckreech

Registered
Sep 8, 2009
2
0
51
I hope you are already fully aware of the extreme dangers of granting any shell access including jailshell access? I am making an extra effort to point this out as 'rar' is one of the "preferred" compression formats used commonly by hackers, pirates, and script kiddies and though this may or may not be the case whenever anyone uses the words "SSH" and "rar" in the same paragraph, I tend to get a little nervous on that one.

The above said, installing "rar" support is just a simple matter of downloading
the source with wget and compiling it and is pretty much a "no-brainer".

Here is a fairly good article on the subject so I won't re-invent the wheel:

Open rar file or Extract rar files under Linux or UNIX
forgive me but I somewhat new with this. what about if i upload RAR files into my domain folder/s is my site vulnerable to hackers as well? :confused:
 

Spiral

BANNED
Jun 24, 2005
2,018
8
193
You lost me with that question ...

It's not RAR that opens any security issues but rather that most of the people who ask for that feature (especially combined with shell access) are typically software pirates and hackers who make up the vast majority of those who would be interested in that combination. There is no problem in and of itself having RAR support or RAR archive files on your server.