Configuring SFTP
Overview
The Secure File Transfer Protocol (SFTP) is a new feature in SSH2.0.
SFTP uses the SSH connection to provide secure data transfer. The switch can serve as the SFTP server,
allowing a remote user to log in to the SFTP server for secure file management and transfer. The switch
can also serve as an SFTP client, enabling a user to log in from the switch to a remote device for secure
file transfer.
With SSH connection across VPNs, you can configure the switch as an SFTP client to establish
connections with SFTP servers in different MPLS VPNs. For more information about this function, see
"Configuring
Configuring the switch as an SFTP server
Before you configure this task, complete the following tasks:
Configure the SSH server.
•
Use the ssh user service-type command to set the service type of SSH users to sftp or all.
•
For more information about the configuration procedures, see
Enabling the SFTP server
This configuration task will enable the SFTP service so that a client can log in to the SFTP server through
SFTP.
When the switch functions as the SFTP server, only one client can access the SFTP server at a time. If the
SFTP client uses WinSCP, a file on the server cannot be modified directly. It can only be downloaded to
a local place, modified, and then uploaded to the server.
To enable the SFTP server:
Step
1.
Enter system view.
2.
Enable the SFTP server.
Configuring the SFTP connection idle timeout period
Once the idle period of an SFTP connection exceeds the specified threshold, the system automatically
tears the connection down.
To configure the SFTP connection idle timeout period:
Step
1.
Enter system view.
SSH2.0."
Command
system-view
sftp server enable
Command
system-view
"Configuring
201
SSH2.0."
Remarks
N/A
Disabled by default.
Remarks
N/A