Securing FTP for your enterprise
At work we are looking to setup an FTP server, however I'm looking for suggestions on securing it. I know there are many options available, encypting just login info, encrypting all data transfered, different types of encryption\certificates, etc. But what have you guys played with\implemented out there. Its a nightmare over here, our users are not very computer savvy and the management has tightened the purse strings.
We've already discussed putting it in the DMZ zone of the firewall. Also due to hardware standards that must be met it needs to run on a Microsoft Win2K3 server.
Any suggestions?