Search

GlobalSCAPE Knowledge Base

Are the Globalscape EFT platform and CuteFTP client software in adherence with the Office of the National Coordinator for Health IT (ONC) standards?

Karla Marsh
EFT

THE INFORMATION IN THIS ARTICLE APPLIES TO:

  • EFT™, v7.1 and later
  • CuteFTP®, v9 and later

QUESTION

Are the Globalscape EFT platform and CuteFTP client software in adherence with the Office of the National Coordinator for Health IT (ONC) standards?

ANSWER

HIPAA is governed by NIST 800-52. NIST 800-52 requires TLS v1.0 and later. In that regard, we are compliant in both EFT and CuteFTP. 

  • EFT v7.1 and later support TLSv1, v1.1, and v1.2, as well as a variety of encryption ciphers. 
  • CuteFTP is a very secure program and supports up to TLS 1.0. Currently, CuteFTP does not support TLS v1.2, but will in a future update to the software. 

The following CIPHERS must be supported for HIPAA compliance:

TLS_RSA_WITH_3DES_EDE_CBC_SHA

TLS_RSA_WITH_AES_128_CBC_SHA

MORE INFORMATION

Refer to http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-52r1.pdf for NIST 800-52 guidelines regarding SSL and TLS implementations.

Details
Last Modified: 7 Years Ago
Last Modified By: kmarsh
Type: FAQ
Rated 2 stars based on 2 votes.
Article has been viewed 8.9K times.
Options
Also In This Category