LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 11-02-2006, 03:40 PM   #1
bitpail
LQ Newbie
 
Registered: Oct 2006
Distribution: Fedora 6/SUSE 10
Posts: 20

Rep: Reputation: 0
FTP TLS w/ browser client..does it work?


Hey everyone, I was sure where to post this so I thought I'd give the general forum a try as it doesn't really have to do with linux in particular.

Anyways, here's the situation....

I've put TLS security on my ftp server (vsftp). I would like to make this method required, however I have some clients that currently use Internet Explorer to connect to the ftp site by typing

ftp://<user>@<domain>

If I restrict the ftp site to only allow connections with TLS this method no longer works.

Is there a way to use a web browser to connect to a FTP server that requires TLS?
 
Old 11-03-2006, 09:08 AM   #2
pixellany
LQ Veteran
 
Registered: Nov 2005
Location: Annapolis, MD
Distribution: Mint
Posts: 17,809

Rep: Reputation: 743Reputation: 743Reputation: 743Reputation: 743Reputation: 743Reputation: 743Reputation: 743
I don't know what TLS is, but I access my linux box from Windows using sftp. I found a really nice (free) Windows GUI client that does sftp---I think is is something like WinSCP. Maybe is includes the TLS protocol....?

Try Google--that is how I found the Windows sftp client.
 
Old 11-03-2006, 09:32 AM   #3
fireant
LQ Newbie
 
Registered: Nov 2006
Location: Dalmatovo, Russia
Distribution: Debian GNU Linux Sarge
Posts: 26

Rep: Reputation: 15
Take a look at PuTTY

Here are the PuTTY files themselves:
  • * PuTTY (the Telnet and SSH client itself)
  • * PSCP (an SCP client, i.e. command-line secure file copy)
  • * PSFTP (an SFTP client, i.e. general file transfer sessions much like FTP)
  • * PuTTYtel (a Telnet-only client)
  • * Plink (a command-line interface to the PuTTY back ends)
  • * Pageant (an SSH authentication agent for PuTTY, PSCP and Plink)
  • * PuTTYgen (an RSA and DSA key generation utility).
 
Old 11-03-2006, 09:42 AM   #4
bitpail
LQ Newbie
 
Registered: Oct 2006
Distribution: Fedora 6/SUSE 10
Posts: 20

Original Poster
Rep: Reputation: 0
From what I understand TLS is an extension of SSL, whereas sftp is ftp using ssh, therefore I'm guessing that each sftp client requires a login. I don't really want to go this way, right now all ftp users have very restrictive rights (nologin) that I would to keep. I can use FileZilla as a windows client and it works great, however the problem arises in that some of my clients (in the human sense) will not want to download and learn another program (FileZilla) when they have been using their web browser previously. If I had it my way they would just use FileZilla and that would be the end of it.
 
Old 11-03-2006, 10:09 AM   #5
fireant
LQ Newbie
 
Registered: Nov 2006
Location: Dalmatovo, Russia
Distribution: Debian GNU Linux Sarge
Posts: 26

Rep: Reputation: 15
If you don't want to give your users login shell, but want to use secure ftp, consider looking at rssh:

Descripion of Debian package rssh:
Quote:
Restricted shell allowing only scp, sftp, cvs, rsync and/or rdist
rssh is a restricted shell to be used as a substitute of the login
shell to allow users to perform only scp/sftp/cvs/rsync,rdist
operations.
.
The security implications are high, so the home directories have
to be set following the instructions provided.
So, by setup rssh you can allow your users cat use any sftp client, without direct access to shell on server.
 
Old 11-03-2006, 10:25 AM   #6
bitpail
LQ Newbie
 
Registered: Oct 2006
Distribution: Fedora 6/SUSE 10
Posts: 20

Original Poster
Rep: Reputation: 0
Thanks fireant, I'll take a look at it.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
FTP Client with SSL/TLS support Osten Linux - Software 11 05-29-2012 11:44 PM
FTP over TLS/SSL --- works, but doesn't ? poweredbydodge Linux - Security 2 11-01-2006 11:45 AM
FTP TLS / SSL Issue -- It works, but doesn't work. poweredbydodge Linux - Networking 0 10-31-2006 12:27 PM
FTP via SSL (TLS) embsupafly Linux - Security 2 03-02-2005 08:47 PM
FTP using TLS via masq / iptables RetroJohn Linux - Networking 6 10-29-2004 05:50 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 01:49 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration