File Transfer Modes

TIBCO MFT Platform Server for z/OS supports the following modes of operation for incoming and outgoing Platform Server requests. It is for both file transfer requests and administrative requests such as audit collection, server status, and node and profile updates.

Tunnel mode is the most secure option and is strongly suggested when communicating to partners over the internet. Tunnel mode requires TIBCO MFT Internet Server V8.2 and TIBCO MFT Platform Server V8.0 or higher.

When running in TLS/SSL or tunnel modes, Global parameters allow you to select the ciphers and TLS protocols(TLSv1, TLSv1.1, TLSv1.2).

Adding ZLIB compression adds an additional level of complexity to the encrypted data and makes it more difficult to decrypt the data.

SSLAUTH Configuration File

When using SSL/TLS or tunnel modes, additional validation can be performed. The SSLAUTH configuration is described in the "SSL Authorization Parameters" section of the TIBCO® Managed File Transfer Platform Server for z/OS Installation and Operation Guide. This file allows you to compare fields in the certificate DN (Distinguished Name) against predefined parameters in the SSLAUTH file. If a match is not made, the request is terminated with an error.