### Contents

- [**Discussions**](#resources-discussions)

# Other IT Management Software Resources

##### Discussions to expand your knowledge on Other IT Management Software

Resource pages are designed to give you a cross-section of information we have on specific categories. You'll find [discussions](#resources-discussions) from users like you.

[ContentsExpand/Collapse Contents](#)
- [**Discussions**](#resources-discussions)

## Other IT Management Software Discussions

0

Question on: CompleteFTP
[How do I secure my server?](/discussions/how-do-i-secure-my-server)

How do I secure my server?

FTP servers are always vulnerable to attack from unauthorised people, and a number of steps should be taken to minimize the risks of this occurring: 1. A good firewall is the first line of defence for security, and should be your first port of call in denying/permitting access to certain IP addresses. 2. If your server is not required to be accessible from the Internet, ensure that it is only reachable internally. If it is not accessible externally, the only attacks can be from within your organization, greatly reducing the risk. 3. Use the IP filtering capabilities of CompleteFTP to only permit the IP addresses you want (if this is possible). 4. Ensure that auto-banning is configured correctly (e.g. the defaults) to prevent dictionary attacks on passwords. 5. Regularly review log files for unwanted intrusions and take remedial action (such as banning IP addresses). 6. Disable protocols that aren't being used, e.g. if you are running an SFTP server only, disable FTP, FTPS and SCP. 7. Disable the automatic Windows users feature, so that only explicitly permitted users are permitted. 8. For SFTP disable password authentication, and only permit public key authentication. This means users must have valid private keys and have their public keys registered on the server. This is not always possible of course. 9. For SFTP disable SSH terminal access. This is disabled by default. SSH terminal access permits Windows users who have this feature enabled to execute almost any program or DOS command, and is potentially a significant security hole.

Answered: Lois Timms on October 17, 2019

FTP servers are always vulnerable to attack from unauthorised people, and a number of steps should be taken to minimize the risks of this occurring: 1. A good firewall is the first line of defence for security, and should be your first port of call in denying/permitting access to certain IP addresses. 2. If your server is not required to be accessible from the Internet, ensure that it is only reachable internally. If it is not accessible externally, the only attacks can be from within your organization, greatly reducing the risk. 3. Use the IP filtering capabilities of CompleteFTP to only permit the IP addresses you want (if this is possible). 4. Ensure that auto-banning is configured correctly (e.g. the defaults) to prevent dictionary attacks on passwords. 5. Regularly review log files for unwanted intrusions and take remedial action (such as banning IP addresses). 6. Disable protocols that aren't being used, e.g. if you are running an SFTP server only, disable FTP, FTPS and SCP. 7. Disable the automatic Windows users feature, so that only explicitly permitted users are permitted. 8. For SFTP disable password authentication, and only permit public key authentication. This means users must have valid private keys and have their public keys registered on the server. This is not always possible of course. 9. For SFTP disable SSH terminal access. This is disabled by default. SSH terminal access permits Windows users who have this feature enabled to execute almost any program or DOS command, and is potentially a significant security hole.

Answered: Lois Timms on November 30, 2016

[See more answers (1)](javascript:void(0);)

[Your answer](/discussions/how-do-i-secure-my-server/comments/new?remote=true)

0

Question on: CompleteFTP
[Which protocols does CompleteFTP support?](/discussions/which-protocols-does-completeftp-support)

Which file transfer protocols does CompleteFTP support? Are there any differences between editions of the product?

CompleteFTP supports FTP, FTPS, SFTP, SCP and SSH (from version 4.0). FTPS is often described as FTP over an SSL connection, while SFTP is file transfer secured by SSH. SCP is an earlier form of secure copy which is also over SSH. CompleteFTP also supports SSH terminals. The Standard Edition supports FTP, FTPS and SFTP. Both SCP and SSH are additionally supported in the Professional Edition.

Answered: Lois Timms on October 17, 2019

CompleteFTP supports FTP, FTPS, SFTP, SCP and SSH (from version 4.0). FTPS is often described as FTP over an SSL connection, while SFTP is file transfer secured by SSH. SCP is an earlier form of secure copy which is also over SSH. CompleteFTP also supports SSH terminals. The Standard Edition supports FTP, FTPS and SFTP. Both SCP and SSH are additionally supported in the Professional Edition.

Answered: Lois Timms on November 30, 2016

[See more answers (1)](javascript:void(0);)

[Your answer](/discussions/which-protocols-does-completeftp-support/comments/new?remote=true)

0

Question on: CompleteFTP
[Is CompleteFTP FIPS-140 certified?](/discussions/is-completeftp-fips-140-certified)

Is CompleteFTP FIPS-140 certified?

The answer is no, but from from version 6.3.0, CompleteFTP will run correctly when Use FIPS compliant algoritms for encryption, hashing, and signing, is enabled on the Windows machine it is installed on. Applications are permitted to disable FIPS compliance, and CompleteFTP does this so that it can still be run. Learn more at: http://enterprisedt.com/questions/index.php/2233

Answered: Lois Timms on October 17, 2019

The answer is no, but from from version 6.3.0, CompleteFTP will run correctly when Use FIPS compliant algoritms for encryption, hashing, and signing, is enabled on the Windows machine it is installed on. Applications are permitted to disable FIPS compliance, and CompleteFTP does this so that it can still be run. Learn more at: http://enterprisedt.com/questions/index.php/2233

Answered: Lois Timms on November 30, 2016

[See more answers (1)](javascript:void(0);)

[Your answer](/discussions/is-completeftp-fips-140-certified/comments/new?remote=true)

- [&lsaquo; Prev‹ Prev](/categories/other-it-management/resources?discussions_page=3)
- [1](/categories/other-it-management/resources)
- [2](/categories/other-it-management/resources?discussions_page=2)
- [3](/categories/other-it-management/resources?discussions_page=3)
- 4
- [5](/categories/other-it-management/resources?discussions_page=5)
- [Next &rsaquo;Next ›](/categories/other-it-management/resources?discussions_page=5)