Dear Zenju,
also from my side thank you for the great job and great software FFS!
I am using already the sftp sync for my privat server but on our business side we are using sftp access via shared keys. The key is provided via putty and is a ssh-dss 1024 key. Would it be possible to integrate this quite common way of authentication of sftp server?
Would be perfect for us and was already asked some posts above...
SFTP: support private key authentication
- Posts: 2
- Joined: 17 Feb 2017
- Posts: 4
- Joined: 21 Feb 2017
Having private key authentication via Pageant would be most helpful.
Since I use PuTTY, the private key doesn't appear to work with FFS. I *think* that the agent forwarding is standard (based on my reading of the PuTTY manual), just not the key storage format.
Working with Pageant and OpenSSH Agent would make for a secure solution, since individual public keys can be restricted on the server to certain actions (unlike a common username/pw login), and FFS would not need to store the private key password.
For what its worth, the PuTTY authors strongly recommend only using RSA keys; DSS/DSA keys have an inherent weakness which *might* allow a signature to give away the private key. (PuTTY manual section 8.2.2)
Since I use PuTTY, the private key doesn't appear to work with FFS. I *think* that the agent forwarding is standard (based on my reading of the PuTTY manual), just not the key storage format.
Working with Pageant and OpenSSH Agent would make for a secure solution, since individual public keys can be restricted on the server to certain actions (unlike a common username/pw login), and FFS would not need to store the private key password.
For what its worth, the PuTTY authors strongly recommend only using RSA keys; DSS/DSA keys have an inherent weakness which *might* allow a signature to give away the private key. (PuTTY manual section 8.2.2)
- Posts: 2
- Joined: 17 Feb 2017
May I please repeat this wish, mopani brought it to the point. This would be such a mandatory feature and it would be great if you can include it.
Software like https://winscp.net/ are using this authentication method and it is secure and easy to use.
Software like https://winscp.net/ are using this authentication method and it is secure and easy to use.
- Site Admin
- Posts: 7211
- Joined: 9 Dec 2007
I've added Pageant support! Let me know in case there are any issues:
http://www.mediafire.com/file/y9dg473jpmxpv31/FreeFileSync_9.2_beta_Windows_Setup.exe
http://www.mediafire.com/file/y9dg473jpmxpv31/FreeFileSync_9.2_beta_Windows_Setup.exe