Using SFTP schedules to setup report/dashboard to be sent to your SFTP folders every day. SFTP Schedules allow admins/analysts to schedule a report/dashboard to be sent to an SFTP destination.
Some common use cases:
- Backup report data periodically to an SFTP server
- Deliver data regularly to your partners' servers
This section describes how you can set up Holistics to export report data to your SFTP server.
To manage your SFTP connections, please visit Integrations Page
To add new SFTP connection, click Add SFTP Connection and fill the required information below
- Display name: Add integration title to manage your different connections
- Host, Port: Address of the SFTP server
- Remote Path: Destination files will be preceded by this path
- Username, Password: Credentials to access the SFTP server
- Holistics Public Key If you are using public key authentication instead of username/password, please add Holistics public key to your authorized keys
You will need to restrict the permissions of the SFTP user on your side. Typically, you would create an user dedicated for SFTP purpose, and allow this user to only read and write files within the root path. Example here.
In any report, click Schedules on the toolbar, then choose New SFTP Schedule
Then fill the required information below for your schedule export
- SFTP Connection: Choose the connection you want to create export schedule, you can manage it at Integrations Page
- File path: The path of the destination file. Holistics will create folders/files if they do not exist. Otherwise, that file will be overwritten (CSV/Excel files are supported)
- Schedule: Monthly/Weekly/Daily/Hourly...
- Filter Values: Set the filter values for the report
Note: if you're on Object-based plan, each SFTP schedule will be 10 objects.
Sometimes when writing to destination, you want the system to add new files (based on date/timestamp) instead of overwriting existing files.
The above will produce filenames like:
The variables you can use are:
$yesterday: Today or yesterday in YYYY-MM-DD
$timestamp: Unix timestamp
$source_title: Title of the report, in lowercase and has its special characters replaced by underscores. E.g. 'Sales@Pivo^*?t Table' -> 'sales_pivo_t_table'
A SFTP Schedule execution follows these steps:
- Execute the Query Report to get result data
- Write the result data to a temporary file in
$REMOTE_PATHis configured in the SFTP connection)
- Prepare the destination path: create the non-existing directories in the destination path
- Move the temporary file to destination path
This section will give you a step-by-step instruction on setting up a new user on your SFTP server that is dedicated for SFTP purpose. The new user will be restricted to access a specific directory and use SFTP commands only.
Run the following commands as root.
Create the new user
Create a new directory. Later, we will make sure the SFTP user can only access this directory by configuring
ChrootDirectory. It needs to be owned by user
root in order for the
ChrootDirectory configuration to work
mkdir -p /holistics chown root: /holistics
/holistics is owned by
root, new user
holistics_sftp should not be allowed to write to that directory. Thus, we will create an inner directory where
holistics_sftp can write to.
In this example, we are creating a new folder named
exported. Later when you fill in the settings of the SFTP Connection in Holistics, you should input
exported in Root Path, so that all output files will reside within this directory.
mkdir -p /holistics/exported chown holistics_sftp: /holistics/exported chmod 0755 /holistics/exported
Restrict the access of new user by editing
# override default of no subsystems #Subsystem sftp /usr/lib/openssh/sftp-server Subsystem sftp internal-sftp Match User holistics_sftp X11Forwarding no AllowTcpForwarding no ChrootDirectory /holistics ForceCommand internal-sftp
The above config makes sure user
holistics_sftp can only read the directory
/holistics and can only use SFTP commands.
Restart sshd service
service sshd restart