<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on Newton Rocha</title><link>https://rochanewton.github.io/tags/security/</link><description>Recent content in Security on Newton Rocha</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026 Newton Rocha</copyright><lastBuildDate>Thu, 10 Sep 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://rochanewton.github.io/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>SSH known_hosts: How Host Key Verification Actually Works (and What to Do When It Breaks)</title><link>https://rochanewton.github.io/posts/sterling-b2bi-08-ssh-known-hosts-host-key-verification/</link><pubDate>Thu, 10 Sep 2026 00:00:00 +0000</pubDate><guid>https://rochanewton.github.io/posts/sterling-b2bi-08-ssh-known-hosts-host-key-verification/</guid><description>&lt;h2 class="relative group"&gt;The warning nobody should click past
 &lt;div id="the-warning-nobody-should-click-past" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#the-warning-nobody-should-click-past" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;Every SSH and SFTP client has the same scary moment: you connect to a server you&amp;rsquo;ve connected to a hundred times before, and instead of a normal prompt you get something like this from OpenSSH:&lt;/p&gt;</description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://rochanewton.github.io/posts/sterling-b2bi-08-ssh-known-hosts-host-key-verification/cover.png"/></item><item><title>SFTP, FTP, FTPS: Protocol Behind the Adapters</title><link>https://rochanewton.github.io/posts/sterling-b2bi-07-sftp-protocol-fundamentals/</link><pubDate>Wed, 09 Sep 2026 00:00:00 +0000</pubDate><guid>https://rochanewton.github.io/posts/sterling-b2bi-07-sftp-protocol-fundamentals/</guid><description>&lt;h2 class="relative group"&gt;Three protocols, one job, very different guts
 &lt;div id="three-protocols-one-job-very-different-guts" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#three-protocols-one-job-very-different-guts" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;FTP, FTPS, and SFTP all claim to do the same thing — move a file from one place to another — and partners use the names almost interchangeably, which is exactly the problem. They are three genuinely different protocols with different port models, different security properties, and different failure modes, and the &lt;a href="https://rochanewton.github.io/posts/sterling-b2bi-02-adapters-vs-services/" &gt;SFTP Server Adapter and SFTP Client Adapter&lt;/a&gt; you configure in Sterling only make sense once you know which one you&amp;rsquo;re actually running. This post goes through each one on its own terms, then spends the back half on SFTP specifically, since that&amp;rsquo;s what carries the overwhelming majority of partner traffic in B2Bi.&lt;/p&gt;</description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://rochanewton.github.io/posts/sterling-b2bi-07-sftp-protocol-fundamentals/cover.png"/></item></channel></rss>