Configuring SFTP Authentication Options for a Settings Template or User Account

You enable and configure SFTP on the Site, then specify the SFTP authentication options for the Settings Template and user accounts.

To specify SFTP authentication options

  1. In the administration interface, connect to EFT Server and click the Server tab.

  2. In the left pane, click the Settings Template or user that you want to configure.

  3. In the right pane, click the Connections tab.

  4. In the Protocols area, select the SFTP (SSH2) check box, then click SFTP Auth. The SFTP Authentication Options dialog box appears.

  5. In the SFTP authentication options list, specify whether user are to connect using Password only, Public key only, Public Key & Password, or Public key or Password.

    icon_info.gif

    Compliance with PCI DSS requires that users change their password upon initial login. Because the Public key only method does not use a password, it potentially violates the PCI DSS and is, therefore, not available on Sites defined using the "strict security settings" option. You can, however, use the Public Key and Password method.

    On Active Directory-authenticated Sites, the Public Key Only and Public key or Password options are not available, because AD Sites require keyboard authentication.

  6. If you selected any option besides Password only, click Edit. The SFTP Public Key Select dialog box appears.

    The SFTP public keys that are defined for this Site appear in the List of keys. If no keys appear, click Key Manager to import keys.

  7. In the List of keys box, double-click the key(s) to use, or click each key, then click Add. The selected key(s) appear in the Keys valid for client list.

  8. Click OK to close the SFTP Public Key Select dialog box. The selected key(s) appear in the Authentication key list.

  9. Click OK to close the SFTP Authentication Options dialog box.

  10. Click Apply to save the changes on EFT Server.