Skip to main content
tiCrypt 2.17.11

Remote File System

A remote file system via SSHFS establishes a connection between a drive on your local machine and your virtual machine.

Once connected, any data you write from your local machine is copied to the virtual drive inside your VM.
This gives you a one-way method to move data into your VM, alongside SFTP transfers.

Mount Remote File System via SSHFS in macOS​

Prerequisites
  • Ensure your macOS is updated to the latest version before starting.
  • Install both macFUSE and SSHFS on your local machine.
  • A separate license may be required for non-personal or commercial use of "macFUSE" and "SSHFS".
  • Your Linux VM must be properly configured for SFTP to work.

Download macFUSE​

  1. Open the macFUSE Stable Release download link in your browser.
  2. In the pop-up, click Save to download the macFUSE.dmg installer locally.
  3. In your downloads directory, click to open the macFUSE installer.

Install macFUSE​

  1. Double-click the icon Install macFUSE.
  2. In the prompt, click Allow.
  3. Click Continue to proceed.
  4. View the license agreement, then click Continue.
  5. In the pop-up, click Agree.
  6. Click Install.
  7. In the pop-up, enter your Mac password.
  8. Click Install Software.

Enable System Extension in Mac​

  1. In the new pop-up, click Open System Settings.
  2. Once in settings, navigate to Privacy & Security section.
  3. Under the Security subsection, click Enable System Extensions....
  4. Enter your password to confirm.
  5. In the new pop-up, click Shut Down.

Set Security Utility at Startup​

  1. Once your Mac is shut down, hold the Start button until you see "Additional Startup Options" on the screen.
  2. Click the icon Options from the boot list.
  3. Select your user account in Mac.
  4. Click Next.
  5. In the prompt, enter your Mac password.
  6. Click Continue.
  7. In the new window, navigate to Utilities in the top taskbar.
  8. Select Startup Security Utility.

Set Security Policy for kernel Extensions​

  1. Next, select your Macintosh HD where your macOS is located.
  2. Click the Security Policy button in the bottom right.
  3. In the prompt, tick the Reduced Security option.
  4. Tick the box to Allow user management of kernel extensions from identified developers.
  5. Click OK to restart your Mac.
note

After you set the security policy, you can also manually restart your Mac.

Download SSHFS​

  1. Once restarted, open the SSHFS Stable Release download link in your browser.
  2. In your downloads directory, click to open the SSHFS installer.

Install SSHFS​

  1. In the installer prompt, click Continue.
  2. View the license agreement, then click Continue.
  3. In the pop-up, click Agree.
  4. Click Install.
  5. In the pop-up, enter your Mac password.
  6. Click Install Software.
  7. Once installed, click Close.
  8. In the pop-up, click Move to bin to delete the installer locally.
  9. Go to Apps and open Terminal.

Copy-paste SFTP Command from your Virtual Machine​

  1. Navigate to Apps and open the Connect Application.
  2. Log into your institution's secure enclave.
  3. Go to the Virtual Machines icon in the top left taskbar.
  4. Click the Virtual Machines Table Overview section in the top left panel.
  5. In the left panel, select the virtual machine you want to mirror files to.
  6. Next, click the SFTP to VM card.
  7. In the pop-up, click the Copy button next to Mac/Linux SSHFS field.
caution

Do not close the Connect Application pop-up.

  1. Paste the SSHFS command into your local machine's terminal.
  2. Press Enter.
  3. An authenticity message with an SHA256 key fingerprint is displayed.
  4. Type yes and press Enter to proceed.
  5. Go to the Connect Application pop-up.
  6. Click the Copy button next to the Password field.
  7. Paste the password into the local machine's terminal and press Enter.
  8. A system extension block pop-up may be displayed.
  9. Click Allow.
  10. Restart your local machine if asked.
info

If the terminal fails to connect your local drive to your VM drive after pasting the password, close the connection pop-up in the secure enclave interface, reopen it by clicking SFTP to VM, and enter the newly generated password into the terminal.

  1. Go to Finder.
  2. Locate the virtual drive in your drives directory.
  3. Double-click the virtual drive to open it.
  4. Drag-and-drop files from your local machine to the virtual drive.
Confirmations, Errors & Solutions
macFUSE Installed Successfully

You can view and open macFUSE in your Apps.

Kernel Extensions Security Policy Set

You have successfully enabled and set up kernel security extensions at startup.

SSHFS (from macFUSE) Installed Successfully

You can view and open SSHFS in your Apps.

Drive Not Found

The virtual drive does not appear on your Mac.

Use the Finder App
  1. Open Finder from your dock (the smiley face icon).
  2. Click Finder in the top-left corner of your screen in the menu bar (this only appears when Finder is active).
  3. Select Settings... (older Mac OS versions say Preferences...).
  4. In the settings prompt, under Locations check YOUR NAME's Mac Book (e.g. John's Mac Book Air).
  5. Navigate to YOUR NAME's Mac Book location in Finder in the left panel.
  6. Locate your mirrored virtual drive.
Not Enough Disk Space

Warning: Not enough disk space to copy "Your-File-Name.xyz" when performing the transfer from your Mac to your VM.

Check VM Space Allocation & Ask Your Admin
  1. Navigate to Start menu.
  2. Search and open the Connect Application.
  3. Log into your institution's secure enclave.
  4. Go to the Virtual Machines icon in the top left taskbar.
  5. Click the Virtual Machines Table Overview section on the top left panel.
  6. In the left panel, select the virtual machine you are using for the transfer.
  7. Ensure you are connected via SFTP to VM transfer locally.
  8. Next, click the Open Terminal card.
  9. In the VM terminal, run df -h to view the available space in the VM.
  10. Click Exit in the top left corner.
  11. Contact your administrator to allow you more space for your files in your transferring VM.
Cannot Access macFUSE

Your macOS is blocking macFUSE.

Allow Mac to use macFUSE

In your Mac, go to System Preferences > Security & Privacy after installation and allow macFUSE.

tip

To save data in other parts of your directory tree, use symlinks (shortcuts that point to another location on the filesystem).

The Mac/Linux SSHFS Command Mechanism Explained​

tiCrypt gives you this command to copy, but never runs it for you. The VM drive is mounted on your computer only when you run the command yourself, in your own terminal.

Syntax:​

mkdir -p ~/_ticrypt_vm_drive; umount ~/_ticrypt_vm_drive; sshfs -o volname="YOUR VM NAME" -o follow_symlinks -p YOUR_PORT USER@localhost:/DRIVE_PATH ~/_ticrypt_vm_drive
PartWhat it does
mkdir -p ~/_ticrypt_vm_driveCreates an empty folder in your home folder for the drive to appear in. Nothing is stored there.
umount ~/_ticrypt_vm_driveDisconnects any drive left mounted there from an earlier session.
sshfs -o volname="EL"Mounts the VM drive and names it "EL" in Finder, in this example.
-o follow_symlinksFollows symlinks in the VM, so you can reach access directories outside your home directory.
-p 12345 john@localhost:/DRIVE_PATHConnects as john on port 12345 and opens the drive at /DRIVE_PATH in the VM.
~/_ticrypt_vm_driveThe folder from the first step, where the drive appears.
caution

The remote file system is an inbound path. Files you drop into the mount are streamed directly into the VM, so nothing is written to your local disk along the way, and the mount gives you no route to pull data back out of the enclave. Use it to get data in; use the Vault for anything that needs to come out, so the export is logged.

Debug​

Confirmations, Errors & Solutions
Brew Installed Successfully

You can view and open Brew from your local Mac terminal.

SSHFS Not Found or Failed to Build

Error:zsh:command not found: sshfs or sshfs:Unsatisfied requirements failed to build.

Install Brew and SSHFS
  1. Run /bin/bash -c "$(curl -fsSL https://raw.githubusercontent.com/Homebrew/install/HEAD/install.sh)".
  2. Enter your password in terminal if requested to check for sudo access.
  3. Hit Enter.
  4. Wait for homebrew to install.
  5. Next run brew install sshfs.
Brew or macFUSE Not Found

Error:brew:not found or macfuse:not found

Install Brew
  1. Run eval "(/opt/homebrew/bin/brewshellenv)"</code>.</li><li>Thenrun<code>echo′eval"(/opt/homebrew/bin/brew shellenv)"</code>.</li> <li> Then run <code>echo 'eval "(/opt/homebrew/bin/brew shellenv)"' >> ~/.zprofile so new terminal windows can find Brew too.
  2. Verify the paths by running brew --version.
  3. You should see your installed brew version below.
  4. Once done, run brew install macfuse.
Brew Install macFUSE Failed

Error:brew install macfuse command fails.

Allow macFUSE Installation

Go to System Settings > Privacy & Security and select Allow to load macFUSE. You may be asked to enter your password in terminal upon installation.

tip

The mount opens in your home directory in the VM and follows symlinks (shortcuts to another location). To put data somewhere else in the VM, create a symlink in your home directory that points there.

Unmount local drive from Remote File System in Mac OS​

note

tiCrypt automatically unmounts previously mounted local drives when the Linux/Mac SSHFS command runs in the terminal.

Method One​

  1. Go to Finder.
  2. Find the drive in the sidebar under Locations, or in your home folder as _ticrypt_vm_drive.
  3. Right-click the virtual drive.
  4. From the options, select Eject.
tip

As a best practice, eject your virtual drive from the remote file system after each session.

Method Two​

  1. Go to Apps in Mac.
  2. Open a local terminal.
  3. In the terminal, run diskutil unmount force ~/_ticrypt_vm_drive.
  4. Check that the terminal reports the drive as unmounted.
tip

If that fails, run the same command with the drive's full path, for example diskutil unmount force /Users/john/_ticrypt_vm_drive.

Mount Remote File System via SSHFS in Windows​

Prerequisites
  • Ensure your Windows is updated before starting.
  • Install either WinFsp and SSHFS or SFTP Drive and SSHFS on your local machine.
  • A separate license may be required for non-personal or commercial use of "WinFsp", "SFTP Drive 2024" and "SSHFS".
  • Your Windows VM must be properly configured for SFTP to work.

Method One​

Download WINFSP​

  1. Open the WINFSP download link in your browser.
  2. Navigate to Downloads in your browser, and click to open the WINSFSP.exe installer.

Install WINFSP​

  1. In the new prompt, click Next.
  2. View the installation path and click Next.
  3. Click Install.
  4. In the pop-up, click Yes to allow WINFSP to make changes to your device.
  5. Once installed, click Finish.

Download SSHFS​

  1. Open the SSHFS download link in your browser.
  2. Navigate to Downloads in your browser, and click to open the SSHFS.exe installer.

Install SSHFS​

  1. In the new prompt, click Next.
  2. View the installation path and click Next.
  3. Click Install.
  4. In the pop-up, click Yes to allow SSHFS to make changes to your device.
  5. Once installed, click Finish.

Map Network Drive​

  1. Go to file explorer in This-PC.
  2. Right-click on This-PC icon in the left panel.
  3. From the options, select Map network drive....
  4. A prompt appears.

Copy-paste SFTP Command from your Virtual Machine​

  1. Navigate to Start menu.
  2. Search and open the Connect Application.
  3. Log into your institution's secure enclave.
  4. Go to the Virtual Machines icon in the top left taskbar.
  5. Click the Virtual Machines Table Overview section on the top left panel.
  6. In the left panel, select the virtual machine you want to mirror files to.
  7. Next, click the SFTP to VM card.
  8. In the pop-up, click the Copy button next to Windows SSHFS field.
caution

Do not close the Connect Application pop-up.

  1. Paste the SSHFS command into your local Map network drive prompt, in the Folder field.
  2. Click Finish.
  3. A new prompt will require your local host password.

Login to your Local Host​

  1. Go to the Connect Application pop-up.
  2. Click the copy button next to Password field.
  3. Paste the password into the local host prompt.
  4. Click OK.
  5. Your secure VM directory will open in File Explorer, and any changes made there will be mirrored in your secure enclave VM.

Method Two​

Download SFTP Drive​

  1. Open the SFTP Drive download link in your browser.
  2. Navigate to Downloads in your browser, and click to open the SFTPDrive2024.exe installer.

Install SFTP Drive​

  1. In the new prompt, click Yes to allow the app to make changes to your device.
  2. Then, click Next.
  3. View the license agreement and click I Agree.
  4. View the installation path and click Next.
  5. Click Next.
  6. Click Install.
  7. Once installed, click Finish to run the SFTP Drive.

Open New Connection​

  1. In the new prompt, click New in the top right.
  2. In the pop-up, under Drive, in the Drive Name field, enter your secure enclave's name. (lowercase)
  3. Next, type localhost in the Remote Host field.

Copy-paste SFTP Commands from your Virtual Machine​

  1. Navigate to Start menu.
  2. Search and open the Connect Application.
  3. Log into your institution's secure enclave.
  4. Go to the Virtual Machines icon in the top left taskbar.
  5. Click the Virtual Machines Table Overview section on the top left panel.
  6. In the left panel, select the virtual machine you want to mirror files to.
  7. Next, click the SFTP to VM card.
  8. In the pop-up, click the Copy button next to remote port, username and password.
  9. Then paste your remote port, username and password into the corresponding fields.
caution

Do not close the Connect Application pop-up.

Test SSH Connection​

  1. Click Test SSH Connection button in the bottom left corner.
  2. In the pop-up click Yes to confirm connection.
  3. In the new pop-up, click OK.

Connect via SSH​

  1. In the SFTP Drive prompt, click OK to connect.
  2. In the pop-up, click Yes to connect the drive now.
  3. Your secure VM directory will open in File Explorer in This-PC directory, and any changes made there will be mirrored in your secure enclave VM.

Unmount local drive from Remote File System in Windows​

Method One​

note

tiCrypt automatically disconnects previously mounted local drives when the Windows SSHFS command runs in the terminal.

  1. Go to File Explorer in This-PC.
  2. Right-click the secure VM directory.
  3. From the options, select Disconnect.
tip

As a best practice, always disconnect your local drive from the remote file system after each session.

Method Two​

  1. Go to SFTP Drive prompt.
  2. Select the running connected drive from the list.
  3. Click Disconnect in the right panel.
note

To reconnect the drive, open the Connect Application and copy-paste the new port and password in the SFTP Drive prompt, select the drive and click Connect in the right panel.