Overview

Below are the MFT bank keys available for download. Please ensure that you are downloading the correct keys for the applicable environment.

SSL Certificates

The SSL certificates are used for HTTPS, FTPS and AS2 (encryption and signature). The external SSL is used for AS2 (encryption and signature).

Key or CertificateEnvironmentDescriptionRenewal Dates
JPMC_FTSCAT_SSL_2026.p7bCAT/UATThis certificate is for users connecting to the external.com UAT environment.Q4 2026, Q3 2027
JPMC_FTS_SSL_2026.p7bProductionThis certificate is for users connecting to the external.com Production environment.Q4 2026, Q3 2027

PGP Keys

These are used by senders to encrypt files sent to MFT or for validating signatures on files sent to a receiver.

Key or CertificateEnvironmentDescriptionRenewal Dates
JPMC_FTSCAT_PGP_2028UATThis PGP key is used by senders to encrypt files sent to MFT or for validating signatures on files sent to a receiver. This key is for the UAT environment.Q2 2028
JPMC_FTS_PGP_2028ProductionThis PGP key is used by senders to encrypt files sent to MFT or for validating signatures on files sent to a receiver. This key is for the Prod environment.Q2 2028

SSH Host Keys

Host keys are used to verify the identity of a server you are connecting to. These are the keys you may need to add for a known host file.

We do not rotate the SSH Host Keys so no renewal dates are listed below.

Open SSH - Internal/External: Linux/Unix OS

Key or CertificateEnvironmentDescription
JPMC_FTSCAT_OpenSSH_HostCAT/UATThis is the CAT host key in open ssh format, used when connecting to the external ftscat.mfts.jpmchase.com environment
JPMC_FTS_OpenSSH_HostProductionThis is the PROD host key in open ssh format, used when connecting to the external ftsx.mfts.jpmchase.com environment (x may be 1, 2)

SSHv2: Any OS other than Linux/Unix

Key or CertificateEnvironmentDescription
JPMC_FTSCAT_SSHv2_HostCAT/UATThis is the CAT host key in SSHv2 format, used when connecting to the external ftscat.mfts.jpmchase.com environment
JPMC_FTS_SSHv2_HostProductionThis is the PROD host key in SSHv2 format, used when connecting to the external ftsx.mfts.jpmchase.com environment (x may be 1, 2)
JPMC_FTS6_SSHv2_HostProductionThis is the PROD host key in SSHv2 format, used when connecting to the external fts6.mfts.jpmchase.com environment

SSH Authentication Keys

These SSH keys are used when the MFT server is authenticating to a remote server. 

Key or CertificateEnvironmentDescriptionRenewal Cadence
JPMC_FTSCAT_SSHv2_RSA2048_AuthCAT/UATUsed when the MFT server is authenticating to a remote server (CAT)Every year
JPMC_FTSCAT_OpenSSH_RSA2048_AuthCAT/UATUsed when the MFT server is authenticating to a remote server (CAT). This is for FM RSA Key, used when FM UAT server authenticating to a remote server.Every year
JPMC_FTSCAT_OpenSSH_RSA4096_AuthCAT/UATUsed when the MFT server is authenticating to a remote server (CAT)Every year
JPMC_FTSCAT_OpenSSH_ECDSA521_AuthCAT/UATOnly to be used by RHEL 7 customers who do not support ssh-rsa (CAT). This is for FM ECDSA Key, used when FM UAT server authenticating to a remote server.Every year
JPMC_FTS_SSHv2_RSA2048_AuthProductionUsed when the MFT server is authenticating to a remote server (PROD)Every year
JPMC_FTS_OpenSSH_RSA2048_AuthProductionUsed when the MFT server is authenticating to a remote server (PROD). This is for FM RSA Key, used when FM PROD server authenticating to a remote server.Every year
JPMC_FTS_OpenSSH_RSA4096_AuthProductionUsed when the MFT server is authenticating to a remote server (PROD)Every year
JPMC_FTS_OpenSSH_ECDSA521_AuthProductionOnly to be used by RHEL 7 customers who do not support ssh-rsa (PROD). This is for FM ECDSA Key, used when FM PROD server authenticating to a remote server.Every year

Support

If you need log-in assistance or experience any issues with your keys/certificates for the CAT/UAT environment, contact your onboarding support team or primary onboarding contact. For production related issues, contact us at 800-997-9217.