Users can be added and modified in the Cerberus FTP Server user database by opening up the User Manager and selecting the Users tab.
The Cerberus FTP Server User Manager's Users Page
To add a user, click the New button from the button group along the right side of the page. A new user popup will appear. All usernames must be unique and are case insensitive. Once you have entered the new username, continue filling out the remaining fields. The user can then be configured by clicking on the additional buttons above the details.
Profile tab for a User
Password The Password for the user.
Group A Cerberus FTP Server Group that this user belongs to.
Constraints tab for a User
Anonymous If checked, the user password is ignored and the user can be logged in using any password.
Disabled Determines whether the account can log in or not. A disabled account cannot log in to the server.
Max Logins The maximum number of connections this user can make to the server at the same time.
Disable Date If a date is set here then the account will become disabled after the date specified.
Note: The granularity of the timer is 30 minutes. The account will be disabled within 30 minutes of the time set.
Max Upload Filesize This field can be used to limit the maximum size of an uploaded file. This value defaults to unlimited. The file size is specified in bytes. Specify 0 or any non-positive value to reset the maximum file size to unlimited.
Allowed IP Addresses A comma-separated list of IP addresses that this user can log in from. If no IP addresses are specified then no per-user IP address filtering is enforced. IP addresses can be specified as a single IP, a range of IP addresses separated by a dash, e.g. 192.168.0.100 - 192.168.0.150, or a CIDR-formatted IP address range. Multiple formats can be combined, with each single IP or range separated by a comma. Note, global IP address deny lists or allow lists are always enforced first, regardless of this setting.
Authentication tab for a User
SSH Authentication Method Determines the authentication requirements for logging into an SFTP interface. Valid options are:
Password Only: Require only a password for authentication.
Public Key Only: Require only a valid public key for authentication
Public Key and Password: Require both a valid public key and a valid password for authenticating a user
Multifactor Authentication (2FA) Determines if Two Factor authentication is allowed or required.
Allow 2 Factor: This option allows users to set up 2FA if they choose to
Require 2 Factor for HTTP/S: This makes 2FA a requirement when using the HTTP/S web client.
Do not allow SSH SFTP logins (No 2FA): This option will not allow users to login via SSH SFTP when 2FA is enabled.
Do not allow FTP/S logins (No 2FA): This option will not allow users to login via FTP/S when 2FA is enabled.
2 Factor Authentication Status
Enabled User has enabled 2FA for their account. Once two-factor authentication is enabled for a user account you can disable it at any time by pressing Disable 2FA
Disabled User does not have 2FA enabled for their account.
Allowed Protocols page for a User
Permitted Login Protocols Controls which protocols a user is allowed to log in with. If a protocol is not checked then the user will not be allowed to log in using that protocol.
FTP Only Settings:
Require Secure Control If enabled, this user can only log in to the server using a secure TLS/SSL encrypted connection.
Require Secure Data If enabled, file transfers will only be allowed over secure TLS/SSL encrypted connections.