Help! Need to find alternative to unsecured FTP
Thread poster: One Planet
One Planet
One Planet
Local time: 03:37
Arabic to English
+ ...
Nov 17, 2004

Our company maintains an FTP server, which is used for our customers and vendors to upload several large files. The traffic is about 40 – 60 files per day, files ranging from 200 Kb to 30 MB per file. Frequently there will be one login and password for a specific job because multiple users need to access the same material.

The solution should have the following attributes:

1. Able to easily handle multiple files (20 – 30 files at a time)

2. Able to hand
... See more
Our company maintains an FTP server, which is used for our customers and vendors to upload several large files. The traffic is about 40 – 60 files per day, files ranging from 200 Kb to 30 MB per file. Frequently there will be one login and password for a specific job because multiple users need to access the same material.

The solution should have the following attributes:

1. Able to easily handle multiple files (20 – 30 files at a time)

2. Able to handle large file transfers

3. Multiple simultaneous user access with the same account

4. Easy administration – creation and deletion of user accounts with restricted access

We are concerned that someone might break into FTP site and use our server box as a jump-off point for malicious acts (spam, etc.). Is there a way we can be protected and still have a nimble and flexible file transfer system? Our customers and vendors change frequently, are not very computer literate and therefore we are not in position to equip them with any custom software (SFTP), nor teach them any special way of handling the site. Additionally, we need our project manager to be able to administer passwords and logins.

We have looked at some web-based solutions (phpAdmin and the like), but have found these too clumsy to handle the queues of files transferred back and forth between clients and vendors.

If anyone can think of some elegant solution to this essentially security related problem, I would be grateful.
Collapse


 
Robert Tucker (X)
Robert Tucker (X)
United Kingdom
Local time: 07:37
German to English
+ ...
HTTP Nov 17, 2004

I'm quite out of my depth here, but why not HTTP if, say, VSFTPD cannot provide the security you require ?

Sorry if this sounds a daft question/suggestion.

(Apache http server free Windows/Unix/Linux, vsftpd free Unix/Linux only)

[Edited at 2004-11-18 11:56]


 
Pablo Roufogalis (X)
Pablo Roufogalis (X)
Colombia
Local time: 02:37
English to Spanish
FirstClass Nov 17, 2004

Hello.

Check FirstClass at www.firstclass.com. It's a great product and probably what you need. Very easy to administer.

You can download a demo version for free (5 users, multiple logins from the same account). Hey, it may be all you need!

I resell it for the Venezuelan market. I can't sell it to you nor would I get any recognition or profit if you buy. My recommendation
... See more
Hello.

Check FirstClass at www.firstclass.com. It's a great product and probably what you need. Very easy to administer.

You can download a demo version for free (5 users, multiple logins from the same account). Hey, it may be all you need!

I resell it for the Venezuelan market. I can't sell it to you nor would I get any recognition or profit if you buy. My recommendation is sincere.

Best regards.
Collapse


 
Mathew Robinson
Mathew Robinson
United Kingdom
Local time: 07:37
English
Bulletproof FTP Server Nov 18, 2004

We use Bulletproof FTP Server v2.3.1.26 for the exact same purpose.

It allows you to create group accounts as well as single accounts.

You can specify how many simultaneous connections are allowed per user account.

You can restrict user access to read/write.

You can specify accepted file types.

You can restrict user to specified directories.

You can limit connections to specific IP addresses.

You can block
... See more
We use Bulletproof FTP Server v2.3.1.26 for the exact same purpose.

It allows you to create group accounts as well as single accounts.

You can specify how many simultaneous connections are allowed per user account.

You can restrict user access to read/write.

You can specify accepted file types.

You can restrict user to specified directories.

You can limit connections to specific IP addresses.

You can block IP's

It works with PASV and PORT

It supports RESUME

We set ours up on a dedicated PC and ADSL line and it works great on WinXP with ICF enabled.

It is very reasonably priced compared to other brands and worth checking out. A 30 day trial version is available from their website... http://www.bpftpserver.com/
Collapse


 
timoke
timoke
Dutch to English
Http/web based solution Nov 18, 2004

Hi,

i have developed a http/web based solution for this problem.

Many translation agencies don't have their own ftp server and since the cost of hardware, software and licenses can be quite high, i have developed a custom solution.

I will explain the principle in short:

Instead of using ftp with a single user I use http with custom authentication, this has the advantage that a users can only see his own documents and not documents uploaded by o
... See more
Hi,

i have developed a http/web based solution for this problem.

Many translation agencies don't have their own ftp server and since the cost of hardware, software and licenses can be quite high, i have developed a custom solution.

I will explain the principle in short:

Instead of using ftp with a single user I use http with custom authentication, this has the advantage that a users can only see his own documents and not documents uploaded by others.

Users administration can be done web based by an administrator.

Behind the scenes the documents are stored in a secure (not directly via web accessible) folder so that downloading and uploading of documents can only be done via the dedicated pages (these pages handle all security issues).

The solution uses Microsoft's .NET technology (free) and sql server (license needed). You can host it on your own server or you can host it at a third party (www.brinkster.com for example offers 2GB of space for 20$/month), which makes it a very chaep and flexible alternative to maintaining your own ftp server.

Documents are organized by customer/freelancer and by project. For example: a customer can have 10 running projects and can upload the source files to a project and download the translated files from that project.

If this could solve your problem, please feel free to contact me for more information.

Regards,

timothy steleman
[email protected]
Collapse


 


To report site rules violations or get help, contact a site moderator:

Moderator(s) of this forum
Laureana Pavon[Call to this topic]

You can also contact site staff by submitting a support request »

Help! Need to find alternative to unsecured FTP






Trados Studio 2022 Freelance
The leading translation software used by over 270,000 translators.

Designed with your feedback in mind, Trados Studio 2022 delivers an unrivalled, powerful desktop and cloud solution, empowering you to work in the most efficient and cost-effective way.

More info »
CafeTran Espresso
You've never met a CAT tool this clever!

Translate faster & easier, using a sophisticated CAT tool built by a translator / developer. Accept jobs from clients who use Trados, MemoQ, Wordfast & major CAT tools. Download and start using CafeTran Espresso -- for free

Buy now! »