SFTP Properties, Ports, and Logs

The following tables list the SFTP properties, security properties, ports, and logs.

SFTP Properties

Table 3-40 SFTP Properties

Property Description

Port (for incoming connections)

The port SFTP listens on. The default is 218.

Permit root login

Allows SFTP logins for the root user. This property is off by default.

Logging level

The verbosity of SFTP log messages.

Idle Session Timeout

Idle timeout in seconds for client session. After the timeout value has been reached and if there is no activity, the user session is closed. By default, the value is set to Infinite.

Keys

RSA/DSA public keys for SFTP authentication. Text comments can be associated with the keys to help administrators track why they were added. As of the 2011.1 software release, key management for SFTP has changed to increase security. When creating an SFTP key, it is required to include the user property with a valid user assignment. SFTP keys are grouped by user and are authenticated via SFTP with the user's name. It is recommended to recreate any existing SFTP keys that do not include the user property, even though they will still authenticate.

Table 3-41 SFTP Security Properties

Property Description

Ciphers

Ciphers for SFTP connections.

MACs

Message authentication codes (MACs) for SFTP connections.

SFTP Ports

The SFTP service uses a non-standard port number for connections to Oracle ZFS Storage Appliance. This is to avoid conflicts with administrative SSH connections to port 22. By default, the SFTP port is 218 and must be specified on the SFTP client prior to connecting. For example, an Oracle Solaris client using SFTP would connect with the following command:

manta# sftp -o "Port 218" root@hostname

SFTP Logs

The SFTP service events log is available at network-sftp:default.

Related Topics