LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 07-13-2008, 03:00 PM   #1
eRJe
Member
 
Registered: May 2005
Location: Netherlands
Distribution: Slackware 13 Kernel 2.6.32.7
Posts: 98

Rep: Reputation: 16
ssh / ssl ftp server


Hi,

I was hoping someone could clear some things up for me.

I have vsftpd running and configured to use SSL. This works fine, clients can logon through SSL and will be rejected without. But now I recently discovered that I can also logon to my ftp server through SSH. How does this work because I don't recal configuring the server for sftp.

Also, which of the two would be more secure?

Thanks,
Robbert
 
Old 07-13-2008, 05:47 PM   #2
simonapnic
Member
 
Registered: Jul 2008
Posts: 70

Rep: Reputation: 16
Post

Quote:
SFTP is not just FTP run over SSH, but rather a new protocol designed from the ground up by the IETF SECSH working group. It is sometimes confused with Simple File Transfer Protocol.
In other words, it has nothing to do with your FTP server. It requires SSH access on your box and they can use those credentials to use it like a FTP account.
More information here:
http://en.wikipedia.org/wiki/SSH_file_transfer_protocol

About security, I'd say SFTP is more secure since it's based on SSH's security.
But, it's not as easy to use I guess as a FTP daemon.

Last edited by win32sux; 07-13-2008 at 06:58 PM. Reason: Changed CODE tags to QUOTE tags to fix page rendering.
 
Old 07-14-2008, 02:24 PM   #3
eRJe
Member
 
Registered: May 2005
Location: Netherlands
Distribution: Slackware 13 Kernel 2.6.32.7
Posts: 98

Original Poster
Rep: Reputation: 16
Hi simonapnic,

Thanks for your reply!

OK I definitally misunderstoot the wiekies cuz I thought they said sftp is ssh over ftp. Must have read it with to much rush. Anyway thanks for clearing that up.

So in other words you are saying I don't have to install a FTP server like vsftpd to connect to my server through sftp. They only thing is that it isn't a "real" ftp connection it only looks like one (GUI)? What is the difference between sftp and ftp?

What advantages will I have using vsftpd (with SSL) above sftp?

Best regards,
Robbert
 
Old 07-15-2008, 09:55 PM   #4
jamesapnic
Member
 
Registered: Jul 2008
Posts: 40

Rep: Reputation: 15
Just incase you want to disable it, drop this line from sshd_config

Quote:
Subsystem sftp /usr/lib/openssh/sftp-server
Its kind of synonymous to ftp over ssh, as in it does the same job, but completely different protocol.
 
Old 07-16-2008, 06:53 AM   #5
ashsethi
LQ Newbie
 
Registered: Jul 2008
Posts: 16

Rep: Reputation: 0
Wanted to reply but i think you got the best of replies already !!
Let us know incase any issues mate.

Cheers
Ash
 
Old 07-16-2008, 04:58 PM   #6
eRJe
Member
 
Registered: May 2005
Location: Netherlands
Distribution: Slackware 13 Kernel 2.6.32.7
Posts: 98

Original Poster
Rep: Reputation: 16
Hi,

Thanks to everyone who replied!

I guess if you don't really need special features during ftp sessions, sftp is a fine solution? Its save and doesn't require any extra deamon to run. Only thing is you will have to install a sftp client instead of the (standard) ftp client.

Thanks again!

Best regards,
Robbert
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Sharing https 443 port for apache ssl and ssh server nx5000 Linux - Software 8 09-02-2009 06:19 AM
How to burn CD from FTP/SSH Server? mus1402 Linux - Newbie 1 02-06-2006 05:33 AM
Unable to access my ssh server and ftp server from the Internet, but smtp works foxone Linux - Networking 1 05-28-2004 05:17 PM
ssh and ftp server not accessible bbenz3 Linux - Networking 1 03-04-2002 06:53 PM


All times are GMT -5. The time now is 07:57 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration