Re: File transfers with post-transfer encryption

From: Scott McGerik (scottlm_at_visi.com)
Date: 08/31/04


Date: 31 Aug 2004 13:48:18 GMT

UnixFan wrote:
> Scott McGerik wrote:
>>
>> A constraint is that the file contents must never be written to disk in
>> plaintext as this server resides in a DMZ and the contents of the files
>> are private health information. The goal of this is to limit the exposure
>> of our production servers by situating them behind a firewall while at
>> the same time allowing our trading partners to deliver files to us in a
>> more secure manner. Our production server would retrieve and remove the
>> files from the DMZ server. There would be no holes in the firewall from
>> the outside world.
>
> Why can't you ask the remote user to encrypt the files using your
> public key before transfer?

That is my preferred approach, that is, have the remote users encrypt
the file before sending it with scp. And, I may have to push for that.
However, I have been also given the constraint that this file transfer
process be as "simple" as possible.

Scott



Relevant Pages

  • Re: Table Design Advice
    ... Are you sure you are using SQL Server? ... CONSTRAINT pk_products PRIMARY KEY, ...
    (microsoft.public.sqlserver.setup)
  • Re: Table Design Advice
    ... Are you sure you are using SQL Server? ... CONSTRAINT pk_products PRIMARY KEY, ...
    (microsoft.public.sqlserver.setup)
  • Re: Designing presentation-tier for occasionally connected applications.
    ... Without a web server anything beyond ... Instead of first selecting the technology ... A requirement defines what should happen, a constraint ... Since this is a Java group, you could think about using Java ...
    (comp.lang.java.gui)
  • Re: Setting fixed task start and end date
    ... Pr4gm4tik wrote: ... putting a duration of 90,000 I was able to get most of the tasks to ... to move it to the Server newsgroup. ... The constraint of As Soon ...
    (microsoft.public.project)
  • Re: Setting fixed task start and end date
    ... Project will only allow you to put a constraint on one end of a task, ... suggested I post to the server group, ... general group and was then asked to move it to the Server newsgroup. ... needed to ensure it always shows up in the user's timesheet. ...
    (microsoft.public.project)