[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

FTP Server Encryption

Posted on 2009-04-23
6
Medium Priority
?
520 Views
Last Modified: 2013-12-09
Hi Folks,

I have a few basic questions about setting up a new FTP server.

I hope to get a server like ipswitch FTP server, gene6 or titanftp as these are encrypted. Does this mean that when a user connects to my FTP server (even with a basic ftp client), that their username/password, uploads and downloads are encrypted?

do the clients need any encryption software on their end?

Another question regarding disaster recovery -
I'm looking to back up this data to another site - what would be the best way of doing this? would it be to replicate the data in realtime as I'd like our FTP server to be available 24/7 even if our network on our primary site went down..

Thanks in advance,

Paul
0
Comment
Question by:madamada999
  • 3
  • 2
6 Comments
 

Assisted Solution

by:bepe86
bepe86 earned 200 total points
ID: 24215302
Hi,

rsync is a good way to replicate data between servers, at least in a unix environment. This can also be tunneled in SSH for encryption.
0
 
LVL 16

Accepted Solution

by:
gurutc earned 800 total points
ID: 24215318
Hi,

The user client will need encryption capability, but most clients do these days.  On the server side you'll need to enforce 'Strict' security to make sure authentication and session data are encrypted.  You'll probably be using FTP/TLS SSL security.  SFTP, or Secure FTP, is a deprecated standard.  One thing you may need to do is get an SSL Certificate for the Server.  You can buy one pretty cheap or roll your own with OpenSSL or Microsoft Certificate Server.

There are tons of replication solutions, one may be RSYNC which is supported on all OS platforms.  

It all depends on your platform.

Good Luck,

- gurutc
0
 

Author Comment

by:madamada999
ID: 24215364
Thanks for your help so far!

so if the client does not have encryption capability the data will not be encrypted...will they even be able to connect to the server?

I think we use a program called replistor at the moment... to replicate the data!

thanks,

0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 
LVL 16

Assisted Solution

by:gurutc
gurutc earned 800 total points
ID: 24215375
Here's more rsync:

The windows client part, NASBACKUP, does not require a rocket scientist.

This solution is how we do synchronization over a large WAN.  This includes some hosts backing up over the Internet.

We protect 3 Terabytes per night from 200 remote servers with a backup strategy using RSYNC.  These include both Windows and Netware servers and some XP desktops also.  Our centralized backup file server runs OpenSuse 10 and has a combination of both RAID SCSI and USB External drives attached.  Then, each day, we back up the Linux box using a Windows server with a tape jukebox attached and running CA ArcServe.  That way we get a daily snapshot to tape allowing us to do a scheduled rotation.

This means we are following the Golden Rule of Backups, which applies no matter how much data you back up, which is this:  Always have 2 separate backup copies of important data.  And it's better if they are different types of media.

If you set your backup up and run it, you'll eventually get the chance to see how it worked.  We've restored over 30 servers with the system I described without any data loss.  The solution I described is scalable all the way down to a small workgroup network.

RSYNC has done what no commercial software seemed to be able to do: give us a good working backup system for our enterprise.  It uses very efficient synchronization and compression algorithms to move the changes from our distributed servers. It also can run over a Secure Shell Connection automatically.   Here's a link to the RSYNC Project:

http://rsync.samba.org/

Here's the Novell RSYNC forum:

http://forge.novell.com/modules/xfmod/newsportal/thread.php?group_id=1148&group=novell.forge.rsync.help

And here's a good resource for RSYNC on Windows:

http://art.wilderness.org.au/software/help_cygwin-rsync.shtml

Here are two more good RSYNC Windows links:

http://www.itefix.no/phpws/index.php?module=pagemaster&PAGE_user_op=view_page&PAGE_id=6&MMN_position=23:23

http://www.nasbackup.com/

The NASBackup Project is a neat Open Source effort to make a gui-based RSYNC client for Windows.  It works very well.

More info:  RSYNC uses an algorithm that only sends the changes in the file systems.  This algorithm is so efficient that i can even get down to only sending the changed blocks in an individual file without having to send the whole file.  It works very well for us even over DSL/Cable speed connections.

- gurutc
0
 
LVL 16

Assisted Solution

by:gurutc
gurutc earned 800 total points
ID: 24215381
If the server is in strict mode, then no connection, period.

You can set it to do both depending on what the client requests.

- gurutc
0
 

Author Comment

by:madamada999
ID: 24215431
Thanks for that guys!
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Configuring network clients can be a chore, especially if there are a large number of them or a lot of itinerant users.  DHCP dynamically manages this process, much to the relief of users and administrators alike!
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Suggested Courses
Course of the Month18 days, 11 hours left to enroll

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question