Configuring access for SSH FTP host users
Use the SSH FTP tab to configure access for SSH FTP host users.
- Acceptable inbound file patterns
- Specify patterns that files must match to be permitted inbound. Patterns can include wildcards and regular expressions. See Using wildcards and regular expressions. If you specify multiple file patterns, separate them with semi-colons (;) or commas (,). Alternatively, enter them on separate lines.
- Users have read-only access
- Restricts SSH FTP users to read-only access of files and directory listings in their home directory. Users with read-only access may only retrieve files or directory listings from their home directory.
- Users can make/remove subdirectories
- Enables SSH FTP users to make and remove subdirectories within their home directory
- Users must connect on a secure port
- Limits users to SSL connections only. When selected, users will able to successfully authenticate only when an FTP/s connection is used.
- IP filter required
- When you select the IP filter required check box, all mailboxes under this host require whitelist IP addresses to be entered. If no whitelist IP addresses are entered for a mailbox, that mailbox is set to not ready. For the mailboxes that have whitelist IP addresses entered, the mailbox user can log in to the mailbox only from the IP addresses configured. If the IP filter required check box is cleared, whitelist IP addresses are not required and the mailbox user can log in from anywhere.
- Password Policy
- Defines the security requirements that will be enforced for all local users. By default, the Password Policy used by all mailbox users is globally defined via the Enforce Password Policy option on the tab. See Other system options.
Field Name |
Description |
---|---|
Acceptable inbound files patterns |
Specified patterns files must match to be permitted inbound. Patterns can include wildcards and regular expressions. See Using wildcards and regular expressions. If you specify multiple file patterns, separate them with semi-colons (;) or commas (,). Alternatively, enter them on separate lines. The following are examples of valid patterns:
|
Users have read-only access |
Restricts SSH FTP users to read-only access of files and directory listings in their home directory. Users with read-only access may only retrieve files or directory listings from their home directory. |
IP filter required |
When you select the IP filter required check box, all mailboxes under this host require whitelist IP addresses to be entered. If no whitelist IP addresses are entered for a mailbox, that mailbox is set to “not ready”. If a mailbox has whitelist IP addresses entered, login to the mailbox is allowed only from the IP addresses configured. If a mailbox does not have any whitelist IP addresses entered, the mailbox user can login from anywhere. If the IP filter required check box is cleared, whitelist IP addresses are not required and mailbox user can log in from anywhere. |
Password Policy |
Defines the security requirements that will be enforced for all local users. By default, the Password Policy used by all mailbox users is globally defined using the Enforce Password Policy option on the Other system options tab. To specify a different set of security restrictions for all mailbox users defined for a particular local user host, select the Override System Level Settings option, select the Enforce Password Policy option (if not already selected), click Configure, make the desired changes and click Apply. See Enhanced Security for further information on the Password Policy options. To disable Password Policy enforcement for all mailbox users defined for a particular local user host, select theOverride System Level Settings option, clear the Enforce Password Policy check box and click Apply. |