Hmm - Interesting conversation.  The account I'm supporting uses Tectia for ZOS 
product set (SSH.COM) which allows for proxy to be setup to convert all ZOS FTP 
to SFTP without any script changes.  This product was already in place when I 
arrived so I was not involved in the decisions to procure or rationale other 
than it was needed to be properly "secure".  But I am now wondering from a 
security / audit perspective if a secondary software product such as Tectia is 
truly required to provide a secure and audit proof FTP, Telnet, TN3270 
environment or is the correct answer is it is just a matter of properly 
configuring ZOS Comm Server, FTP, & ATTLS properly which in essence fully 
secures the FTP service adequately?

Thoughts?

Steve Estle

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to