iSnare.com - Free Content Articles Directory
Authors Contents [Advanced Search][Add OpenSearch][Job Search]
Distribute your articles to thousands of article sites for only $2 and below! Read more...

Index  Computers and Technology
 

Transferring Files Securely Using SFTP

 
[ Contact the Author] [ Send to a Friend] [ Article Publisher] [Make PDF] [ Print] [ Bookmark & Share]
 
Read our Terms of Service before reprinting this article. The submitter specified above has claimed the rights to this article.
David Muck

SFTP is a protocol for transferring files using SSH to secure the commands and data that are being transferred between the client and the server. When using FTP, the data that is being transferred is not encrypted, exposing this data to eavesdropping, tampering, or message forgery. With SFTP, the data that is transferred between the client and the server is encrypted, preventing unauthorized users from accessing your data.

Components Needed

To transfer files using the SFTP protocol, you will need a server that is configured for SFTP and a client that supports it. Popular SFTP servers include FileZilla, WinSCP, and DataFreeway. The most commonly used SFTP client is PuTTY, which is available free of charge. Users who desire a more intuitive interface may opt for a more user-friendly client, such as Zephyr’s PASSPORT.

How SFTP Works

There are two basic components to file transfer with SFTP; server validation and client authentication. These two components use public and private keys for authenticating communication between the client and the server. The server is validated by comparing the server’s public key with the public keys stored on the client machine. The server’s public key is usually contained in a file called “known_hosts” located on the server, and the client’s public key is stored in an encrypted file on the local machine.

Clients can be authenticated in three different ways:

- Username and password
- Private key and passphrase
- Keyboard-interactive authentication

With username and password authentication, a user account is set up on the SFTP server. When using private key and passphrase authentication, the client’s public key is added to the “authorized_keys” file on the server. Once the server validation has occurred, the client must enter their passphrase in order to load their private key and complete the authentication process.

Keyboard-interactive authentication uses the method of asking the client a series of questions, and the client must answer these questions correctly in order to be authenticated. This allows for the implementation of assorted authentication methods. For example, username and password authentication can be disabled on the server, but keyboard-interactive authentication could be used to ask the client for their username and password.

File Compression

Most SFTP Clients provide an option to enable file compression. With this option enabled, data sent by the server is compressed before sending, and decompressed at the client end. Likewise, data sent to the server is compressed first and the server decompresses it at the other end. This can help to speed up file transfers, especially with low-bandwidth connections.

SFTP Versions

There are currently two versions of the SFTP protocol: SSH-1 and SSH-2. SSH-2 is a newer, more secure implementation. SSH-1 contains a known security vulnerability, and SSH-2 is recommended for optimum security.

SFTP vs FTPS

SFTP and FTPS are two entirely different protocols.

- SFTP uses SSH to secure transmissions whereas FTPS uses SSL security
- The standard port setting for FTP is 21. The default port for SFTP is 22

Summary

SFTP should be used when you need to transfer sensitive or confidential data between a client and a server that is configured to use SSH for secure transactions.

Important NoticeDISCLAIMER: All information, content, and data in this article are sole opinions and/or findings of the individual user or organization that registered and submitted this article at Isnare.com without any fee. The article is strictly for educational or entertainment purposes only and should not be used in any way, implemented or applied without consultation from a professional. We at Isnare.com do not, in anyway, contribute or include our own findings, facts and opinions in any articles presented in this site. Publishing this article does not constitute Isnare.com's support or sponsorship for this article. Isnare.com is an article publishing service. Please read our Terms of Service for more information.

Zephyr Development Corporation is a highly respected developer of advanced terminal emulation and host integration solutions for Microsoft Windows. More about SFTP Secure File Transfer: http://www.zephyrcorp.com/sftp.htm

Article Tags: client [See Dictionary], server [See Dictionary], sftp [See Dictionary]
Got a question about this article? Ask the community!
Article published on November 27, 2008 at Isnare.com
 
Rate this article:

Dumb Terminals - Where Are They Now?
Submitted by: David Muck

In the early days of computing, mainframe users accessed their systems using a dumb terminal Dumb terminals are input/output devices with no processing capability and only enough memory to decipher particular control codes...

Guide to TN3270 Emulation
Submitted by: David Muck

TN3270 emulation is a communications standard that allows a remote terminal such as a Windows workstation to communicate with an IBM or IBM-compatible mainframe...

Guide to VT220 Emulation
Submitted by: David Muck

VT220 Emulation uses the telnet protocol to create a TCP/IP connection to a remote host typically running the Unix, AIX, IBM i or Linux operating system...

Guide to TN5250 Emulation
Submitted by: David Muck

TN5250 emulation uses the telnet protocol to create a TCP/IP connection to a remote host Initially, IBM 5250 terminals were sold with IBM's System/34 minicomputer system...

Transferring Files Between Windows and UNIX
Submitted by: David Muck

Unix FTP can be used to transfer files between PC's and Unix-based file servers File transfer protocol (FTP) is the network protocol that is used to transfer the files from the PC to the Unix file server over TCP...

Evolution of the AS400 and ISeries
Submitted by: David Muck

In 1988, IBM introduced the AS400® as a server solution for midsize businesses and departments within larger enterprises...

Using Legacy System Integration to Reduce Risk and Costs
Submitted by: David Muck

Legacy system integration can be defined as reusing existing legacy systems and applications by integrating them with newly developed enterprise applications...

Transferring Files Securely Using FTPS
Submitted by: David Muck

FTPS is a protocol for transferring files using SSL to secure the commands and data that are being transferred between the client and the server...

Guide to IBM PSeries Emulation
Submitted by: David Muck

The IBM pSeries line of servers, also known as IBM System p, was originally named RS/6000 These servers run the AIX, IBM i or Linux operating systems...

Reviewing the Akiles DuoMac 531 Combination 5:1 Pitch Coil and 3:1 Pitch Wire Binding Machine
Submitted by: Jeff McRitchie

As the only binding machine on the market with its particular set of features and options, the Akiles DuoMac 531 appears to hope that its versatility will provide binding solutions for businesses that want flexibility in their document production...

Akiles DuoMac 521 Combination Binding Machine Review
Submitted by: Jeff McRitchie

The Akiles DuoMac 521 presents the market with some nice versatility, although in an unusual combination of binding styles...

Reviewing the Akiles DuoMac 541 Combination 5:1 and 4:1 Pitch Spiral Coil Binding Machine
Submitted by: Jeff McRitchie

The Akiles DuoMac 541 is a unique binding machine in that it allows users to produce documents with both a four to one and five to one pitch binding...

Reviewing the Akiles DuoMac C51 Plastic Comb and 5:1 Pitch Coil Combination Binding Machine
Submitted by: Jeff McRitchie

Uniquely positioned as the only 5:1 pitch combo binding system on the market, the Akiles DuoMac C51 is presented as a solution for businesses that want the ability to do a variety of binding styles all on one machine...

Reviewing the Akiles Megabind 1E Plastic Comb Binding Machine
Submitted by: Jeff McRitchie

An electric comb binder that is meant for medium sized organizations and daily use, the Akiles Megabind 1E includes some features that smaller binding systems don't...

Reviewing the Akiles Offibind 21D Plastic Comb Binding Machine
Submitted by: Jeff McRitchie

As the smallest of Akiles' comb binding systems, the Offibind 21D is intended for use in small or home offices, or for businesses on a very tight budget...

Reviewing the Akiles OffiWire Wire-O Binding Machine
Submitted by: Jeff McRitchie

Presented as a small or home office solution for light duty binding, the Akiles OffiWire comes in 3:1 or 2:1 pitch versions...

Reviewing the Akiles Roll-A-Coil Electric Spiral Coil Inserter
Submitted by: Jeff McRitchie

Seeking to offer the marketplace a lot of features for a low price, the Akiles Roll @ Coil is uniquely positioned in the world of electric coil inserters...

Akiles WireMac Duo Combo Review
Submitted by: Jeff McRitchie

It seems that Akiles has looked to fill a gap in the marketplace with the WireMac Duo As the only machine available to consumers that can bind documents with either a two to one or three to one pitch hole pattern, the WireMac Duo offers users some unprecedented flexibility...

Reverse Phone Lookup - Find the Owner of a Cell Or Landline Phone Number
Submitted by: J Williams-Foster

We've all received phone calls from numbers we didn't recognize Sometimes you may miss calls, and you want to speak to the person again...

Apple Releases New Update That Fixes Guest Account Bug in Snow Leopard
Submitted by: Gregg Housh

On November 9th Apple released the second update for Snow Leopard, the latest installment of their Mac Operating System...

LG KM900 Arena Mobile Phone Review - Connect With the New Generation Media Phone
Submitted by: Carlson Osbourne

Every time a new mobile phone handset is released into the public domain, its features seem to get bigger and better than ever before...

Smartphone Vs Iphone - Pros And Cons
Submitted by: Roberto Sedycias

Smartphones and iPhone both are the novel introduction for communication, besides having a galore of features...

Digital Vs Analog Resolution - Pixels Vs TVL (TV Lines) Explained
Submitted by: Jon Hough

One of the most confusing and difficult topics in the CCTV world is resolution Most of us have digital cameras or video camcorders and have heard the term megapixel used as the most common comparison in resolution between various makes and models...

Dahle 30114 Personal Shredder Review
Submitted by: Jeff McRitchie

The Dahle 30114 is a personal-use shredder designed to be placed beside your desk and used occasionally throughout the day...

Isnare.com Footer Divider

© 2004-2009. Isnare Free Articles - An Isnare Online Technologies Free Articles Project. All Rights Reserved.   Privacy Policy