Re: File transfers with post-transfer encryption

From: UnixFan (gxy1997_at_yahoo.com.au)
Date: 08/31/04


Date: 30 Aug 2004 21:58:07 -0700

Scott McGerik <scottlm@visi.com> wrote in message news:<412e0513$0$8088$a1866201@newsreader.visi.com>...
> Can or how do I set up a system so that after a remote user transfers a
> file to my local server the file is immediately encrypted with GnuPG?
> That is, as soon as the file contents are received, they are passed to
> a program that encrypts and then writes them to disk. I am using OpenSSH
> 3.8 and prefer a system that allows the remove users to use scp or sftp
> and to be transparent to them.
>
> A constraint is that the file contents must never be written to disk in
> plaintext as this server resides in a DMZ and the contents of the files
> are private health information. The goal of this is to limit the exposure
> of our production servers by situating them behind a firewall while at
> the same time allowing our trading partners to deliver files to us in a
> more secure manner. Our production server would retrieve and remove the
> files from the DMZ server. There would be no holes in the firewall from
> the outside world.
>
> Pointers to FAQs, books, and other resources are appreciated.
>
> Scott McGerik

Why can't you ask the remote user to encrypt the files using your
public key before transfer?



Relevant Pages

  • Re: Difficulty logging on to server
    ... runs on a server, and this is why the machine was built. ... started coming in with remote desktop that the strange behavior ... You could also watch the memory usage and thread count while the ... Starts when a remote user logs on and stops when they log off. ...
    (microsoft.public.windows.server.sbs)
  • Re: Difficulty logging on to server
    ... I understand that even if I uninstall Outlook, ... tested good solution for an SBS setup that takes also care of the ... runs on a server, and this is why the machine was built. ... Starts when a remote user logs on and stops when they log off. ...
    (microsoft.public.windows.server.sbs)
  • Re: ImpersonateLoggedOnUser with SSPI
    ... You're running Excel on MachineX as UserX ... The Analysis Server is running on MachineY ... Dave Christiansen, Windows Core Security Testing ... > local remote user. ...
    (microsoft.public.platformsdk.security)
  • Re: ImpersonateLoggedOnUser with SSPI
    ... local remote user. ... Integrated Security I would like to open a trusted connection to this server ... options to start Excel and that worked fine for the connection to the ... > When you call ImpersonateSecurityContext, ...
    (microsoft.public.platformsdk.security)
  • Re: Request.ServerVariables("LOGON_USER")
    ... If the remote user does not authenticate to IIS, it is not possible for the ... server to figure out the remote user's logon name. ...
    (microsoft.public.inetserver.iis)