SECURITY MANAGEMENT 3-9
iPASOLINK EX Advanced: SET NETWORK AND SYSTEM PROVISIONING GGS-000547-01E
3.1.7 SFTP
SFTP (SSH File Transfer Protocol) securely transfers a file among NEs, using the
mechanism of SSHv2. iPASOLINK uses the SFTP Server to enable the following
functions:
3.1.7.1 Providing Function of Secure File Transfer
In order to establish a secure network for uploading/downloading files, SFTP
function is provided.
3.1.7.2 Data Upload/Download Service
Data upload and download service are available; however, downloading to
iPASOLINK is available only by the user(s) who is/are authorized to write data into
iPASOLINK. Only the designated directories can be accessed by SFTP. For files such
as F/W, FPGA, Configuration Data, etc., their storage path and file names are
designated as well, depending on their types.
If 90 seconds pass without any SFTP commands issued from the client, the session is
terminated by the SFTP Command Time Out.
3.1.7.3 Session Management
Upon accepting the connection from external device, the system proceeds to the login
authentication process. An unauthorized user is denied.
If 90 seconds pass without any SFTP commands issued from the client, the session is
terminated by the SFTP Command Time Out.
SFTP uses the TCP Port #22 by default.
Changing the SSH Connection Port # requires special attention since the Port # of
SSH Connection and that of SFTP connection are the same (cannot change either one
alone).
3.1.7.4 User Authentication Function
iPASOLINK supports the internal authentication only.