FTP is not an Option
Many websites are updated using File Transfer Protocol (FTP). Don't do it.
A discussion thread How Do You Store FTP Login Information For Your Clients? highlighted what common practices are, but almost entirely missed the issues of transfer of login credentials over unencrypted channels, privileged access to the whole of the server, account sharing, password and user management.
... [I] also put the info in the client file folders (actual paper client folders) for future reference and sometimes in Outlook business Contact Manager...
It's no surprise that some of the most serious hacks are suspected of being undertaken using compromised FTP accounts.
FTP is not an option. Ask your hosting company or systems staff to disable FTP services and block all traffic to/from your web servers on TCP ports 20 and 21, at your network firewall.
Posted on: 16 June 2009 at 09:28 hrs

Comments are filtered automatically and should appear shortly after they been checked.