Medium
Transfer
Regional
Transfer Family servers should not use FTP protocol for endpoint connection
NIST 800-53PCI DSS v4.0.1PCI DSS v4.2.1
Description
Flags Transfer Family servers that use FTP for endpoint connections. FTP transmits data in plaintext and should be replaced with SFTP or FTPS.
Remediation
Update the Transfer Family server configuration to use secure protocols (SFTP, FTPS, or AS2) instead of FTP.
Steps
- Open the AWS Transfer Family console.
- Select the server that is using FTP protocol.
- Go to the 'Protocols' section in the server settings.
- Remove 'FTP' from the enabled protocols.
- Ensure that secure protocols (SFTP, FTPS, or AS2) are enabled.
- Save the server configuration.
Compliance
NIST 800-53PCI DSS v4.0.1PCI DSS v4.2.1