Retiring Plain FTP
Plain FTP sends usernames, passwords, and file contents across the network unencrypted — and yet it survives in most organizations, held in place by old scripts, old devices, and partners nobody wants to call. Retiring it is rarely a technical challenge; it is a discovery and coordination project wearing a technical costume.
This series is the coordination playbook: making the case in language leadership funds, finding every plain-FTP flow you own (including the ones nobody remembers), sequencing the retirement so early wins build momentum, moving partners without drama, containing the devices that can never upgrade, and proving at the end that cleartext is actually gone. The hands-on protocol conversion lives in our migration guide; this series gets the organization through it.
Articles in This Series
- Why Plain FTP Has to Go (and How to Say It)
The cleartext problem made concrete, compliance and insurance pressure, and a business case template written in risk language leadership acts on. - Finding Every Plain-FTP Flow You Own
Port scans, firewall log mining, and the script-and-scheduled-task sweep — building the retirement inventory, including the shadow FTP nobody documented. - The FTP Retirement Plan: Sequence and Timeline
Grouping flows by owner and partner, sequencing easy wins first, parallel-run strategy, and setting a shutdown date that actually holds. - Moving Partners Off FTP: Communication That Works
Notice templates, offering the new endpoint with test windows, tracking partner progress, and handling the laggards without burning bridges. - When a Device Only Speaks FTP: Containment
The scanner or instrument that will never learn SFTP — isolation segments, the local-drop-and-secure-relay pattern, and documented risk acceptance. - Proving Plain FTP Is Actually Gone
Final verification scans, disabling with monitoring for reappearance, closing the loop with compliance, and keeping it gone.
Explore More Topics
This series is part of the Sysax file transfer topic library, which covers the protocols, security practices, automation techniques, and operational skills behind reliable file transfer. The library pairs well with the practical tools we build: Sysax Multi Server, a secure FTP, FTPS, SFTP, and HTTPS server for Windows, and Sysax FTP Automation, which schedules and scripts secure transfers so the routine ones run themselves.
