Article Directory :: Computers & Technology Articles

How to Securely Transfer Files with SSH File Transfer (SFTP)

By Alicia Hilton

Subscribe to Alicia Hilton's RSS feed using any feed reader!

Republish: EasyPublish
Published: 18Nov2008
Word count: 492
Viewed: 295 time(s)
Bookmark this article using any bookmark manager!
Get Free Content For Your Site

SFTP is a protocol for transferring files using SSH to secure the commands and data that are being transferred between the client and the server. When using FTP, the data that is being transferred is not encrypted, exposing this data to eavesdropping, tampering, or message forgery. With SFTP, the data that is transferred between the client and the server is encrypted, preventing unauthorized users from accessing your data.

Components Needed

To transfer files using the SFTP protocol, you will need a server that is configured for SFTP and a client that supports it.

How SFTP Works

There are two basic components to file transfer with SFTP; server validation and client authentication. These two components use public and private keys for authenticating communication between the client and the server. The server is validated by comparing the server's public key with the public keys stored on the client machine. The server's public key is usually contained in a file called "known_hosts" located on the server, and the client's public key is stored in an encrypted file on the local machine.

Clients can be authenticated in three different ways:

- Username and password
- Private key and passphrase
- Keyboard-interactive authentication

With username and password authentication, a user account is set up on the SFTP server. When using private key and passphrase authentication, the client's public key is added to the "authorized_keys" file on the server. Once the server validation has occurred, the client must enter their passphrase in order to load their private key and complete the authentication process.

Keyboard-interactive authentication uses the method of asking the client a series of questions, and the client must answer these questions correctly in order to be authenticated. This allows for the implementation of assorted authentication methods. For example, username and password authentication can be disabled on the server, but keyboard-interactive authentication could be used to ask the client for their username and password.

File Compression

Most SFTP Clients provide an option to enable file compression. With this option enabled, data sent by the server is compressed before sending, and decompressed at the client end. Likewise, data sent to the server is compressed first and the server decompresses it at the other end. This can help to speed up file transfers, especially with low-bandwidth connections.

SFTP Versions

There are currently two versions of the SFTP protocol: SSH-1 and SSH-2. SSH-2 is a newer, more secure implementation. SSH-1 contains a known security vulnerability, and SSH-2 is recommended for optimum security.

SFTP vs FTPS

SFTP and FTPS are two entirely different protocols.

- SFTP uses SSH to secure transmissions whereas FTPS uses SSL security

- The standard port setting for FTP is 21. The default port for SFTP is 22

Summary

SFTP should be used when you need to transfer sensitive or confidential data between a client and a server that is configured to use SSH for secure transactions.

Zephyr Development Corporation is a highly respected developer of advanced terminal emulation and host integration solutions for Microsoft Windows. More about Zephyr's PASSPORT and SFTP for Secure File Transfer Using SSH

Bookmark this article using any bookmark manager! Subscribe to Alicia Hilton's RSS feed using any feed reader!

EasyPublish™ this article - publishers click here

More articles by Alicia Hilton

Free Report!
Ten Essential Secrets Of Article Marketing ... Grab Your Free
Copy
Now:




We respect your privacy.


Need Content?
Regular Top Quality Content for your Blog, Ezine or Website ...
Delivered Direct,
For Free!

Click For Details



Arts & Entertainment
Automotive
Business - General
Computers & Technology
Finance & Investment
Food & Drink
Health & Fitness
Home & Family
Internet Marketing/Online Business
Legal
Pets & Animals
Politics & Government
Reference & Education
Religion & Faith
Self-Improvement/Motivation
Social
Sports & Recreation
Travel & Leisure
Writing & Speaking

More computing articles:

  • How To Choose Between Bluehost and 1and1 (Hanson Raider)
    With the trend of businesses going online becoming so common, it is very important to know which web host should be picked in order to get best value for money being paid. Bluehost against 1and1 hosting services

  • InMotion Hosting With WordPress Happens To Be Every Successful Blogger's Choice (Hanson Raider)
    One web host known for bagging the maximum number of awards and recommendations over the past ten years is InMotion. After stepping the field of web hosting back in 2001, the firm became an instant hit among multinationals and individuals. Wordpress of InMotion hosting is not just a tool but a one stop solution for all those newbies wishing to become a part of the blogging world.

  • Is Reading Bluehost Hosting Reviews A Good Idea? (Hanson Raider)
    Bluehost hosting company is one of the most known companies in the world of web hosting companies or web hosts that currently exist in the market today. Many people eager to learn more about Bluehost hosting and want to know if going through reviews of Bluehost hosting is a good idea.

  • Now Where Did I Put That Web Host? (Hanson Raider)
    It is no wonder that with the ever growing and changing digital world we live in there is an increased need for quality websites boasting useable and industry pertinent information made available to the knowledge thirsty world that awaits their arrival. This is why website hosting accounts are becoming easier to find for all end users today.

  • Points That Increase Bluehost Rating (Hanson Raider)
    With thirteen years of experience in web hosting, Bluehost is no joke. The company is proud to have entertained and treated thousands and thousands of clients over the years and most of these clients have been satisfied. The company offers one basic plan suited for all which is the Platinum Plan. This feature basically contains all those features that will be needed by an average client.

We Automatically Distribute Articles
To Thousands Of Publishers And Web Sites:

Submit Article
All content is viewed and used by you at your own risk and we do not warrant the accuracy or reliability of any of the information. The views expressed are those of the individual contributing authors and not necessarily those of this web site, or its owner, Takanomi Limited.
 
Copyright © 2012 Takanomi Ltd. Company no. 5629683. All rights reserved. | Privacy | Legal | Contact Information