Cerberus 12.11 SFTP server and OAuth Authenciation
Hi,
We have Cisco Call Managers and Unity servers using the Cerberus SFTP server for backups. We have recently upgraded to version 12.11 and now experiencing authentication issues between the servers. We was using basic authenication before the upgrade since Microsoft has depreciated basic authenication we believe this is the issue. Do Cerberus support OAuth2 authenication? If so, please provide any documentation for switching to the OAuth2 authenciation model.
Thanks,
-
Hello Quintin!
I currently do have an enhancement request with our Product team regarding the implementation of OAuth2, but I do not have an estimate on completion or a targeted release for this as of yet.
With 12.11, we've begun the use of OpenSSL 3.0 to introduce support for TLS v1.3 and to maintain compliance with the latest FIPS 140-2 standards. As part of the new compliance requirements for FIPS 140-2, some SSH key exchange parameter types are no longer compliant. The most important one from a compatibility perspective with older clients is the
ssh-rsahost key type that most older SSH clients support, but is not accepted using OpenSSL 3.0 while remaining compliant with FIPS 140-2. We have a couple of great support articles that should help you both diagnose, and remediate these compatibility issues.It does depend on the error message that is being produced when you are trying to make these connections, but this document I am including below should assist in getting things rolling again. If you would like us to take a look into your logs, or just need some extra assistance, please send us an email at support@cerberusftp.com, with a description of the behavior and a recent copy of your logs.
You will be able to find your logs within the main Cerberus directory, the usual path being C:\ProgramData\Cerberus LLC\Cerberus FTP Server\log.
Related article:
Why won't some SSH SFTP clients connect after updating Cerberus to 12.11?
Thank you for taking the time to use our community forum!
0
Please sign in to leave a comment.
Comments
1 comment