Tools
Restrict file types in Serv-U
This article shows how to restrict certain file types to be uploaded in Serv-U MFT & FTP. Note: The option to restrict file types (*.exe and *.bat) only works in file transfer and this option is not available in file sharing.
First published date
Last published date
Overview
By Default, Serv-U will allow any file types or extensions to be uploaded by users. Configuring Serv-U to restrict certain file types to be uploaded will save disk space and make Serv-U more secure from malicious file that can be uploaded by a user.
Product section
Resolution
Serv-U can be configured to restrict file types in the Server, Domain, Group or User level.
User level restriction
- Go to Domains > Users > Domain Users.
- Edit the user account and then go to Directory Access Tab.
- Click the "Add.." button to add user or select the user to edit their user properties for this purpose.
- In the Path field, type in the file extension you wish to restrict - For example *.exe or *.pdf , etc,.
- Make sure to uncheck all the boxes for File and Directory permissions, including the Inherit option.
- Once the file type is added, make sure the Home Directory entry in the Directory Access list is at the bottom of the list, below all the file types.
Server or Domain level restriction
- In Management Console, go to Global or Domains > Limits & Settings > Limits tab
- From the "Limit Type" drop down select "Advanced".
- Edit the 'Apply server and domain directory access rules before user and group' option and click YES to create a new limit.
- Select the check box beside 'Apply server and domain directory access rules before user and group' and Save.
- Now still in the Management Console, go to Global or Domains > Directories > Directory Access tab.
- Add each of the file type extensions you wish to restrict. Also move them above the directory paths.
- IMPORTANT: Do not add or enter any actual folder locations or paths in this page, just the file type extensions.