Sharing SFTP Credentials
When sharing credentials with clients, it’s best advised to follow the steps below in order to minimize security risks for PMG.
Limit the parties who receive the creds to essentials only. ie, don’t add entire client aliases to an email thread where creds are being passed. This helps limit the blast radius in case anything goes wrong.
Use the format below to outline the SFTP details:
host: sftp.alliplatform.com
username: {insert username here}
password: {utilize onetimesecret.com to protect the password and share}
directory: writeable/
Port: 22
Credentials should be stored in an individual client 1pass vault on the PMG side.