Password authentication is an alternative arrangement for organisations whose system cannot support SSH key authentication, whether you deliver ONIX files to TitlePage or receive ONIX or CSV files from TitlePage. SSH key authentication remains the preferred method. This article explains how to set your own SFTP password, configure your connection, and test it.
Use password authentication only when the Australian Publishers Association (APA) has advised that it is appropriate for your system. To set your own SFTP password, open the private setup page: https://security.publishers.asn.au/security/sftp/password. This page is not shown in normal Security Centre navigation. Do not forward or publish the address; it is for users approved to use the password-authentication process.
Who this is for
This article is for anyone who has been advised by APA to use password authentication because their system cannot support SSH key authentication, including publishers, distributors, and service providers who deliver ONIX files to TitlePage, and organisations such as bookstores who receive ONIX or CSV files from TitlePage.
Publisher folders and Data Editor access
A publisher folder is the secure SFTP location assigned to one publisher. ONIX files for that publisher are delivered to that folder. Publisher folders are kept separate so that files and access are correctly limited to the relevant publisher.
You can manage an SFTP account or deliver files for a publisher only when you have the Data Editor role for that publisher. Many people are a Data Editor for one publisher: their employer. Some people, such as service providers, are also a Data Editor for one or more client publishers. Each publisher you are authorised to work with appears as a separate publisher folder and SFTP account row.
Always check the publisher name and directory value before setting a password or configuring a connection. Do not use one publisher's SFTP account to deliver files for another publisher.
If you cannot see View SFTP accounts, Manage SFTP accounts, or another SFTP management option in Security Centre, you do not currently have Data Editor access for a publisher. Ask a Company Admin for the relevant publisher to follow the Manage organisation staff and TitlePage roles support article and assign you the Data Editor role. If you deliver files for a client publisher, its Company Admin must give you Data Editor access for that client publisher too. After the role is added, sign out and sign in again if the SFTP page does not appear straight away.
Before you begin
You need:
- the private password-setup page: https://security.publishers.asn.au/security/sftp/password, provided for this approved fallback process
- a TitlePage account with the Data Editor role for the relevant publisher folder
- an SFTP client or publishing system that supports password authentication
- the publisher folder you need to connect to
Set your own SFTP password
- Open https://security.publishers.asn.au/security/sftp/password and sign in when prompted.
- Select the publisher folder for the connection. Check the publisher name and directory value carefully. If you have access to more than one publisher, select the folder for the publisher whose ONIX files you will deliver.
-
Create a password that meets all the displayed requirements:
- at least 15 characters
- at least one lowercase letter
- at least one uppercase letter
- at least one digit
- at least one symbol (a non-alphanumeric character)
- Enter the same password in Confirm password.
- Select Set SFTP password (the button may have a different label until the Security Centre wording is updated).
You create this password yourself. APA support should not create it or send it to you.
Store the password in an approved password manager or secure credential store. Do not email it, put it in a spreadsheet, or add it to general notes.
Connection information
- Protocol: SFTP (SSH)
- Server / host: login-sftp.titlepage.com
- Port: 22
- Username: The username shown for the relevant publisher folder in Security Centre
- Authentication method: Password
- Password: The password you set using the private setup page
Do not use an FTP or FTPS connection type. SFTP is a different protocol.
Configure your client or publishing system
- Create a new SFTP connection or destination.
- Choose SFTP or SSH File Transfer Protocol.
- Enter login-sftp.titlepage.com as the host and 22 as the port.
- Copy the username from Security Centre for the selected publisher folder.
- Select Password as the authentication method.
- Enter or securely store the password you created.
If your publishing system stores credentials, use its secure credential store. Limit access to people and services that need to deliver ONIX files.
Test the connection
- Connect using the new SFTP destination.
- Confirm that the connection succeeds and that you can see the assigned publisher folder.
- If you deliver files, upload an approved test file only if APA has asked you to do so. Do not upload unrelated files. If you receive files, confirm that you can see and download the files provided in the folder.
- If you deliver an ONIX file, follow TitlePage file-naming requirements and check the resulting load report.
Record the test date, publisher folder, and system used. Do not record the password.
Common problems
- Connection is refused — Confirm the host is login-sftp.titlepage.com, the protocol is SFTP, and the port is 22.
- Sign-in fails — Check the username, selected publisher folder, and password. Re-enter the password carefully; passwords are case-sensitive.
- The password button is unavailable — Select a publisher folder and make sure both password fields match all listed requirements.
- I cannot see View SFTP accounts or Manage SFTP accounts — Ask the relevant publisher's Company Admin to give you the Data Editor role, following the Manage organisation staff and TitlePage roles support article.
- You can connect but cannot find the expected folder — Check that the selected publisher folder matches the username in Security Centre. Contact APA before changing credentials.
Changing or removing password access
You can change your password at any time using the password-setup link. You do not need to ask APA for permission to change it. If you believe the password has been exposed, change it promptly using the approved process and contact APA if you need help.
Security Centre may show a Delete action for a password SFTP account. Deleting the account stops that connection's SFTP access. Check the publisher folder and notify affected system owners before taking that action.
Related articles
- Delivering and receiving files via SFTP: overview
- Delivering ONIX files using SSH key authentication
Need help?
Contact TitlePage / APA support with the publisher name, directory value, username, the client or publishing system you are using, and the exact error message. If you need access, say that you need the Data Editor role for the named publisher. Never include the password in an email or support ticket. You can contact TitlePage support for further help.
Comments
0 comments
Article is closed for comments.