Hmm - Interesting conversation. The account I'm supporting uses Tectia for ZOS product set (SSH.COM) which allows for proxy to be setup to convert all ZOS FTP to SFTP without any script changes. This product was already in place when I arrived so I was not involved in the decisions to procure or rationale other than it was needed to be properly "secure". But I am now wondering from a security / audit perspective if a secondary software product such as Tectia is truly required to provide a secure and audit proof FTP, Telnet, TN3270 environment or is the correct answer is it is just a matter of properly configuring ZOS Comm Server, FTP, & ATTLS properly which in essence fully secures the FTP service adequately?
Thoughts? Steve Estle ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [email protected] with the message: INFO IBM-MAIN
