This online help file is for EFT Server version 6.3.x. For other versions of EFT Server, please refer to http://help.globalscape.com/help/index.html. (If the Index and Contents are hidden, click Show Contents pane in the top left corner of this topic.) |
GlobalSCAPE® EFT Server™ version 6 combines the robust security features and extensibility of EFT Server with the simplicity and ease of use of Secure FTP Server. EFT Server is offered in a Small-to-Medium Business (SMB) edition and an Enterprise edition, with modules available so that you can extend EFT Server's functionality as you need it. Certain features are available only in EFT Server Enterprise and/or only with the modules. Refer to EFT Server Feature Comparison for a detailed list of the features available in the SMB and Enterprise editions and each of the modules.
Version 6.3 of EFT Server and EFT Server Enterprise include numerous enhancements based on customer feedback, analyst research, and security/policy mandates of some of our customers.
EFT Server (SMB) and EFT Server Enterprise
New Status viewer to monitor in-progress and recent file transfers (requires ARM for historical transactions)
Redesign of the IP address allow/deny functionality to separate manually added addresses and system-added addresses, including date/time added and reason; supports white listing
New "IP Added to Ban List" Event Rule triggers when an IP address is added to the ban list automatically by EFT Server because of invalid login attempts or other security criteria, allowing you to define Actions for this event, such as sending email or executing a command
"Too many invalid commands" Event Reason
Added Decrypt and Verify Signature and Verify Signature Only options to the OpenPGP Action
Added Event Rule "precise time stamp" context variable
Added multi-threaded PGP architecture
Added Denial of Service detection to all protocols
Added UTF-8 filenames support over HTTP and SFTP
Support for Type E (EBCDIC) mode
Registry key to supply an alternate string (back to the client) in response to the SYST command
Support to authenticate over SFTP using a password or certificate.
The non-FIPS version of the OpenSSL library was updated to version 0.9.8o
Added detailed logging of SFTP connections to connection log in Status Viewer
Added disable of auto import of ARM text files via a registry key
Added ability to sort objects alphabetically in the administration interface tree pane
Added trigger of the "User Disabled" event rule when users expire
Added ability to apply PGP Event Rule Actions to "On File Download" events
Prompt remote administrator to accept or reject SSL certificate when connecting from a remote administration interface
SSL certificate wizard now allows you to choose from three different public and private key formats and can export certificates in DER, PKCS#7, or PEM (ASCII) encoded
Allow administrator to remove domain name from AD logon name when creating user folders
Ability to manage multiple users at the same time (password reset, delete, disable, enable, unlock)
Two-Factor Authentication (2FA) via RADIUS, RSA Secure ID, and steel-belted RADIUS
More robust Scheduler/Timer Even Rule with the ability to define custom calendars, import and export of calendars
New EVENT.TIMESTAMP_PRECISE variable for time to the millisecond
"Write to Windows Event Log" Action
Ability for multi-part transfers to be available in the Event Rule Copy/Move via a registry key
Ability to impersonate user in Copy/Move File and Download File Actions
Added Overwrite, Skip, and Numerate options to Copy/Move File and Download File Actions
Added Folder Monitor support for two modes of operation: high throughput or high number of folder monitors
Added "Cleanup logs" action to the "Backup and Cleanup" Timer rule in new installs
Added HTTP and SFTP keyboard interactive login support for RSA and RADIUS pin creation
Added SIZE as a fallback for transfer verification when XCRC is not supported by remote server
Added registry option to use LOGON_NEW_CREDENTIALS instead of LOGON_INTERACTIVE for folder monitor
Added support for SFTP client Copy/Move and Download transfers of files greater than 4 GB
Ability for user-level admins to unlock user accounts, in addition to enable/disable and change password
Added the AML task name to AWE debug logging
Added UTF-8 filenames support in AWE tasks
Added a warning message if a duplicate folder monitor is created for the same folder
Added TRACE level logging of AS2 HTTP headers
"Compensating Control" status added to PCI DSS report
Auditing and Reporting Module (ARM)
EFT Server now installs SQL Server Express 2008 R2
Advanced Workflow Engine (AWE)
EFT Server’s AWE module was updated to Automate version 8.
The AWE module now requires Microsoft .NET Framework version 4 Full version, not the client.
The following functionality was added to the AWE Actions:
Compression action: Added 7zip compress/uncompress
FTP action: Added FXP; synchronize method; FIPS 140 mode; FTPS clear command channel (CCC) mode; SFTP validation of server host key; SFTP provide protoversion prior to connection; FTP advanced action file exist; folder exist, get crc; FTP tuning options (UseLargeBuffers); get long list dataset shows file attributes
Get File Info action: Added ability to retrieve folder information
Send/Get email and exchange actions: Support for Exchange 2010; improved filter engine based on query for Imap and Webdav; Ability to send custom headers
Service Management: Added remote service install, start, stop, pause, resume
Web Service action: Added support for Soap 1.2 protocol
Full Unicode support across all Actions
Start Task and Stop Task Actions are enabled and available for use in Workflows
COM API - Numerous interfaces, methods, properties, and enumerators were added, modified, or removed. Refer to "What's New in the COM API" for details.
Secure Ad Hoc Transfer (SAT) (Refer to the SAT User Guide for details.)
Added new web configuration interface for viewing and modifying settings
Added default SAT Event Rules in EFT Server to automatically send upload notifications, delete expired temporary users, and notify senders of upload(s) received from temporary users.
Web Transfer Client (WTC) (Refer to the WTC documentation for details.)
Form-based login with ability to choose WTC or plain interface
Per-Site and Server-wide branding
Lost password/username reset
Single sign-on (SSO) support on AD Sites
More detailed status in the Transfer queue