Re: How safe are FTP servers?



On 28 May, 02:34, Sylvain Robitaille <s...@xxxxxxxxxxxxxxxxxx> wrote:
Nico wrote:
And horses were designed for people to ride on.

I don't think so, no ... That is about as correct as "NNTP was designed
to transfer binary content". It wasn't, but people adapted it, just as
they adapted horses.

I thought the modern horse, as a species, was human-evolved from an
older species, much as dogs were evolved from canids. A fast Wikipedia
search doesn't seem to agree with me, so your point is taken.

... it's a very bad idea to use for handling any protect content, ...

As I said in my previous post, it's an awful protocol for exchanging
authentication information with (and I agree with you regarding *any*
sensitive content).

I've had good success migrating companies off of it to HTTPS for
download and HTTPS/WebDAV for upload.

You migrate people *from* FTP to WebDAV, in the name of security? I'll
grant that you've already said you're using HTTPS which is obviously the
right way to go ...

Yes, I do. I find the necessarty firewall configuration to be easier,
and the fine-grained control of user authentication and access to be
vastly superior. The one problem is symlinks.

.