Re: SFTP Client trough ISA Server 2000



Actually, there are two (often confused) issues here:
- FTPS, or FTP over SSL is not (can not be) supported because ISA can't "see into" the encrypted traffic and is unable to "follow
the conversation" as it would for clear-text FTP.
- SFTP, or FTP over SSH uses the same port most SSH tools do; TCP:22 and does not require ISA to follow the conversation.

Try creating a protocol rule allowing SSH outbound and see if that helps.
--
--
Jim Harrison [ISA SE]
Read the help, books and articles!

This posting is provided "AS IS" with no warranties, and confers no rights.

"Autenticação em FTP através do Proy" <AutenticaoemFTPatravsdoProy@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:876C406D-3E99-49A9-8D0C-124BE0BD028E@xxxxxxxxxxxxxxxx
Hello,

I need to configure an access from internal workstations to external FTP
servers using a SFTP client (Winscp 3.6.7) to do uploads and downloads.
Firewall Client is already installed on the workstations. Connections made
trhough another FTP Client (that not uses SFTP) at port 21 work fine. Even if
I change the port, it doesn't work.
At the ISA Server, I have FTP Filter Protocol enabled and a rule that allow
FTP inbound/outbound.

I have some doubts:

1. Is there any other protocol that I have to setup/enable?
2. Is there any configuration that have been done on Firewall Client?
3. Is ISA Server 2000 SFTP (SSH-2 FTP) compatible?

Thanks,

Rafael


.



Relevant Pages

  • Re: Secure file transfer
    ... We're talking about SFTP, which is a variant how to use SSH to secure the ... FTP protocol. ... is it better to use AUTH SSL or SSH/SFTP?" ...
    (comp.security.misc)
  • Re: Secure file transfer
    ... We're talking about SFTP, which is a variant how to use SSH to secure the ... FTP protocol. ... "FTP over SSH" is the protection of the command channel. ...
    (comp.security.misc)
  • Help: FTP over SSH to Windows FTP server behind Linux gateway/firewall
    ... How do I encrypt a regular ftp session over SSH with the following ... rp: = remote port: ...
    (comp.security.ssh)
  • Re: tunnelling
    ... > If I want to tunnel a ftp connection I have to ... > server I want to connect to, port 21. ... What you're doing is telling your SSH client to _listen_ on port 21 ...
    (comp.security.ssh)
  • Re: ftp server question
    ... That innocent looking port scan you see in your firewall today could ... So anyone running an open FTP server has probably already been 'found out' but not everyone runs a log and even fewer probably check it! ... the SSH server, so it only gets attacked once every three minutes tops. ...
    (alt.computer.security)