[Madlug] sftp/scp server with ldap/AD integrated authentication

Jeremy Carroll Jeremyc at tasconline.com
Thu May 29 11:07:30 CDT 2008


There are also free offerings from Jscape [2] which gets you most of
what you asked for. The problem is that Directory integration and SCP
requires a license. Tumbleweed [2] also has an awesome Secure file
transfer solution, but is pricey. I've found that for any serious
Business 2 Business Secure File Transfer solution that conforms to IT
regulator compliance is hard to build from hand. Even if you use OpenSSH
sftp-server in a root-jail. Key management becomes an issue, as well as
logging, auditing, and encryption.

[1] http://www.jscape.com/secureftpserver/index.html
[2] http://www.tumbleweed.com/

 

-----Original Message-----
From: madlug-bounces at madisonlinux.org
[mailto:madlug-bounces at madisonlinux.org] On Behalf Of John Moser
Sent: Thursday, May 29, 2008 10:14 AM
To: Chris Niesen
Cc: madlug at madisonlinux.org
Subject: Re: [Madlug] sftp/scp server with ldap/AD integrated
authentication

> Has anyone implemented this type of external file transfer server
config?
> Requirements below:
>
> 1.  SFTP
> 2.  SCP
> 3.  Authentication w/ M$ AD/LDAP
> 4.  possible CIFS access
> 5.  Setup of auto deletion of files older than 30 days
>
> I have seen some commercial apps out on the internet, but I was 
> wondering if anyone on the list had any suggestions.

Chris,

Have you tried OpenSSH's sftp-server combined with PAM with Winbind?  I
believe that'd get you what you wanted.  I can probably provide more
details if needed, but googling around provides most of the key parts.

-John

_______________________________________________
Madlug mailing list  -  Madlug at madisonlinux.org
http://www.madisonlinux.org/mailman/listinfo/madlug


More information about the Madlug mailing list