on 10-22-2015 1:31 PM
Hi SDNites,
I am using Password based authentication for SFTP adapter but would like to know if it is less secure than Key based authentication. Also please let me know if the data, user and password all are encrypted in both the approaches or not.
Regards,
Abhi
Hello Abnishek,
SFTP supports not only password or certificate based authentication, but the combination of them (dual authentication) - when both password and certificate are used during authentication procedure. Thus, if you are concerned about secure authentication, I would suggest using dual authentication method rather than selecting between password or certificate. I would grade existing supported authentication mechanisms for SFTP adapter as following:
1. (least secure) Password. As mentioned by others earlier, passwords can be hijacked or hacked (especially if there are no password restriction and strong password generation rules in place);
2. Certificate;
3. (most secure) Password and certificate (dual).
Regards,
Vadim
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Abhi,
Password protection is vulnerable to phishing attacks, there are chances that anyone can hack into your data or see what you are transmitting to your third party.
Certificates on the other enable use of asymmetric key exchange method between 2 communication parties using the private key and certificate pair. Your data will be nothing more than a jumbled bit of information for anyone who tries to hack through
Hope this explains!
Regards,
Karthik
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hello Abhishek,
Both are secured.
But in layman terms without considering PI,Passwords authentication is a bit little safer because passwords can be cracked,Whereas Keys cant be.
And coming to encryption you should encryption part,Keys or passwords doen't play any role here.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
87 | |
10 | |
10 | |
10 | |
7 | |
6 | |
6 | |
5 | |
5 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.