Re: File transfers with post-transfer encryption
From: Scott McGerik (scottlm_at_visi.com)
Date: 08/31/04
- Previous message: Richard E. Silverman: "Re: Plink batch file - Problem sending commands"
- In reply to: UnixFan: "Re: File transfers with post-transfer encryption"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 31 Aug 2004 13:48:18 GMT
UnixFan wrote:
> Scott McGerik wrote:
>>
>> A constraint is that the file contents must never be written to disk in
>> plaintext as this server resides in a DMZ and the contents of the files
>> are private health information. The goal of this is to limit the exposure
>> of our production servers by situating them behind a firewall while at
>> the same time allowing our trading partners to deliver files to us in a
>> more secure manner. Our production server would retrieve and remove the
>> files from the DMZ server. There would be no holes in the firewall from
>> the outside world.
>
> Why can't you ask the remote user to encrypt the files using your
> public key before transfer?
That is my preferred approach, that is, have the remote users encrypt
the file before sending it with scp. And, I may have to push for that.
However, I have been also given the constraint that this file transfer
process be as "simple" as possible.
Scott
- Previous message: Richard E. Silverman: "Re: Plink batch file - Problem sending commands"
- In reply to: UnixFan: "Re: File transfers with post-transfer encryption"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|