Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
159 changes: 159 additions & 0 deletions docs/user/files-and-folders/e2ee-folders.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,159 @@
---
sidebar_position: 130
id: e2ee-folders
title: End-to-End Encrypted Folders
description: Create, unlock, and use end-to-end encrypted folders in OpenCloud.
draft: false
---

# End-to-End Encrypted Folders

End-to-end encrypted folders provide an additional layer of protection for sensitive content in OpenCloud.

When you create an end-to-end encrypted folder, you set a separate password for it. You need this password whenever you unlock the folder and access its contents in the Web Client.

:::important

End-to-end encrypted folders are currently intended for use with the Web Client. Mobile and Desktop Clients do not support the E2EE workflow and should not be used to access or modify encrypted folders.

:::

:::danger

Keep the password for an end-to-end encrypted folder in a safe place. OpenCloud cannot reset or recover it. If you lose the password, you permanently lose access to the folder and its contents.

:::

## Create an end-to-end encrypted folder

To create an end-to-end encrypted folder:

1. Go to the location where you want to create the encrypted folder.
2. Open the “+ New” menu.
3. Select “Folder”.

<img src={require("./img/e2ee-folders/create-folder-menu.png").default} alt="Create a new folder from the New menu" width="1920"/>

## Enable end-to-end encryption

In the “Create a new folder” dialog:

1. Enter a folder name.
2. Enable “End-to-end encrypt this folder”.

<img src={require("./img/e2ee-folders/create-folder-name.png").default} alt="Create a new folder dialog" width="400"/>

When end-to-end encryption is enabled, OpenCloud automatically adds the `.vault` suffix to the folder name.

<img src={require("./img/e2ee-folders/encryption-enabled.png").default} alt="End-to-end encryption enabled for the new folder" width="400"/>

Click “Continue”.

## Set the folder password

After enabling end-to-end encryption, you must set a password for the folder.

This password unlocks the encrypted folder and is required to access the files inside it.

<img src={require("./img/e2ee-folders/set-password.png").default} alt="Set a password for the encrypted folder" width="400"/>

The dialog provides the following controls:

- “Show password” displays the password you entered.
<img src={require("./img/e2ee-folders/show-password.png").default} alt="Show password button" width="400"/>

- “Copy password” copies the password to the clipboard.
<img src={require("./img/e2ee-folders/copy-password.png").default} alt="Copy password button" width="400"/>

:::important

Store the password in a safe place, such as a password manager.

:::

Click “Create”.

## Identify an encrypted folder

The encrypted folder appears in the file list with a lock icon.

<img src={require("./img/e2ee-folders/encrypted-folder-created.png").default} alt="Encrypted folder created in OpenCloud" width="1920"/>

The lock icon indicates that the folder is end-to-end encrypted.

## Unlock an encrypted folder

When opening an encrypted folder, you are asked to enter the folder password.

<img src={require("./img/e2ee-folders/unlock-folder.png").default} alt="Unlock an end-to-end encrypted folder" width="400"/>

Enter the password and click “Unlock”.

After unlocking the folder, you can access its contents in the Web Client.

<img src={require("./img/e2ee-folders/unlocked-folder.png").default} alt="Unlocked encrypted folder" width="1920"/>

:::note

You must enter the password again when the encrypted folder needs to be unlocked in the Web Client.

:::

## Add files to an encrypted folder

After unlocking an encrypted folder, you can add files by uploading existing files or by creating supported file types directly in the folder.

### Upload files

You can upload existing files or folders to an encrypted folder in the same way as to any other folder.

For details, see [Upload files or folders](./upload-download-unzip.md#upload-files-or-folders).

### Create files

Only the following file types can be created directly inside an encrypted folder:

- Markdown files
- OC Notes

Other file types, such as documents, spreadsheets, and presentations, are not available for direct creation in encrypted folders.

<img
src={require("./img/e2ee-folders/create-file-menu.png").default}
alt="New menu in an encrypted folder with document, spreadsheet, and presentation options disabled"
width="1920"
/>

For details about creating files, see [Create files and folders](./create-rename-move.md#create-files-and-folders).

## Share an encrypted folder

You can share an end-to-end encrypted folder with other OpenCloud users.

The recipient must have the folder password to unlock the encrypted folder and access its contents. Share the password separately using a secure channel.

Public links are not supported for encrypted folders or files.

## Preview and download behavior

Some files in end-to-end encrypted folders cannot be previewed directly in the browser.

In this case, OpenCloud indicates that no preview is available and offers the file for download instead.

<img src={require("./img/e2ee-folders/no-preview-available.png").default} alt="No preview available for a file in an encrypted folder" width="1920"/>

## Limitations

End-to-end encrypted folders are designed for storing sensitive data. Because their contents are encrypted, some OpenCloud features and clients are not supported.

The following limitations apply:

- End-to-end encrypted folders are currently intended for use with the Web Client. Mobile and Desktop Clients do not support the E2EE workflow and should not be used to access or modify encrypted folders. Existing encrypted files may be displayed in their encrypted form, while files added through these clients are not end-to-end encrypted and may not be usable in the Web Client.
- Files and folders cannot be moved from another location in OpenCloud into an encrypted folder.
- Files stored in encrypted folders are not included in search results.
- Collaborative editing is not available for files stored in encrypted folders.
- Office documents cannot be opened or edited in the browser with Collabora.
- In-browser previews are not available for encrypted files.
- Public links are not supported for encrypted folders or files.

You can still upload existing files directly to an encrypted folder using the Web Client.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Original file line number Diff line number Diff line change
@@ -0,0 +1,159 @@
---
sidebar_position: 130
id: e2ee-folders
title: Ende-zu-Ende-verschlüsselte Ordner
description: Ende-zu-Ende-verschlüsselte Ordner in OpenCloud erstellen, entsperren und verwenden
draft: false
---

# Ende-zu-Ende-verschlüsselte Ordner

Ende-zu-Ende-verschlüsselte Ordner bieten eine zusätzliche Schutzebene für sensible Inhalte in OpenCloud.

Beim Erstellen eines Ende-zu-Ende-verschlüsselten Ordners legen Sie ein separates Passwort dafür fest. Sie benötigen dieses Passwort jedes Mal, wenn Sie den Ordner entsperren und im Web Client auf seine Inhalte zugreifen.

:::important

Ende-zu-Ende-verschlüsselte Ordner sind derzeit für die Verwendung mit dem Web Client vorgesehen. Mobile und Desktop Clients unterstützen den E2EE-Ablauf nicht und sollten nicht verwendet werden, um auf verschlüsselte Ordner zuzugreifen oder sie zu ändern.

:::

:::danger

Bewahren Sie das Passwort für einen Ende-zu-Ende-verschlüsselten Ordner an einem sicheren Ort auf. OpenCloud kann es nicht zurücksetzen oder wiederherstellen. Wenn Sie das Passwort verlieren, verlieren Sie dauerhaft den Zugriff auf den Ordner und seine Inhalte.

:::

## Ende-zu-Ende-verschlüsselten Ordner erstellen

So erstellen Sie einen Ende-zu-Ende-verschlüsselten Ordner:

1. Gehen Sie zu dem Speicherort, an dem Sie den verschlüsselten Ordner erstellen möchten.
2. Öffnen Sie das Menü „+ Neu“.
3. Wählen Sie „Ordner“ aus.

<img src={require("./img/e2ee-folders/create-folder-menu.png").default} alt="Neuen Ordner über das Menü Neu erstellen" width="1920"/>

## Ende-zu-Ende-Verschlüsselung aktivieren

Im Dialog „Neuen Ordner erstellen“:

1. Geben Sie einen Ordnernamen ein.
2. Aktivieren Sie „Diesen Ordner Ende-zu-Ende verschlüsseln“.

<img src={require("./img/e2ee-folders/create-folder-name.png").default} alt="Dialog zum Erstellen eines neuen Ordners" width="400"/>

Wenn die Ende-zu-Ende-Verschlüsselung aktiviert ist, fügt OpenCloud dem Ordnernamen automatisch die Endung `.vault` hinzu.

<img src={require("./img/e2ee-folders/encryption-enabled.png").default} alt="Ende-zu-Ende-Verschlüsselung für den neuen Ordner aktiviert" width="400"/>

Klicken Sie auf „Fortfahren“.

## Ordnerpasswort festlegen

Nach dem Aktivieren der Ende-zu-Ende-Verschlüsselung müssen Sie ein Passwort für den Ordner festlegen.

Dieses Passwort entsperrt den verschlüsselten Ordner und wird benötigt, um auf die darin enthaltenen Dateien zuzugreifen.

<img src={require("./img/e2ee-folders/set-password.png").default} alt="Passwort für den verschlüsselten Ordner festlegen" width="400"/>

Der Dialog bietet folgende Funktionen:

- „Passwort anzeigen“ zeigt das eingegebene Passwort an.
<img src={require("./img/e2ee-folders/show-password.png").default} alt="Schaltfläche Passwort anzeigen" width="400"/>

- „Passwort kopieren“ kopiert das Passwort in die Zwischenablage.
<img src={require("./img/e2ee-folders/copy-password.png").default} alt="Schaltfläche Passwort kopieren" width="400"/>

:::important

Speichern Sie das Passwort an einem sicheren Ort, beispielsweise in einem Passwortmanager.

:::

Klicken Sie auf „Erstellen“.

## Verschlüsselten Ordner erkennen

Der verschlüsselte Ordner wird in der Dateiliste mit einem Schlosssymbol angezeigt.

<img src={require("./img/e2ee-folders/encrypted-folder-created.png").default} alt="Verschlüsselter Ordner in OpenCloud erstellt" width="1920"/>

Das Schlosssymbol zeigt an, dass der Ordner Ende-zu-Ende verschlüsselt ist.

## Verschlüsselten Ordner entsperren

Beim Öffnen eines verschlüsselten Ordners werden Sie aufgefordert, das Ordnerpasswort einzugeben.

<img src={require("./img/e2ee-folders/unlock-folder.png").default} alt="Ende-zu-Ende-verschlüsselten Ordner entsperren" width="400"/>

Geben Sie das Passwort ein und klicken Sie auf „Entsperren“.

Nach dem Entsperren des Ordners können Sie im Web Client auf dessen Inhalte zugreifen.

<img src={require("./img/e2ee-folders/unlocked-folder.png").default} alt="Entsperrter verschlüsselter Ordner" width="1920"/>

:::note

Sie müssen das Passwort erneut eingeben, wenn der verschlüsselte Ordner im Web Client entsperrt werden muss.

:::

## Dateien zu einem verschlüsselten Ordner hinzufügen

Nach dem Entsperren eines verschlüsselten Ordners können Sie vorhandene Dateien hochladen oder unterstützte Dateitypen direkt im Ordner erstellen.

### Dateien hochladen

Sie können vorhandene Dateien oder Ordner genauso in einen verschlüsselten Ordner hochladen wie in jeden anderen Ordner.

Weitere Informationen finden Sie unter [Dateien oder Ordner hochladen](./upload-download-unzip.md#dateien-oder-ordner-hochladen).

### Dateien erstellen

Nur die folgenden Dateitypen können direkt in einem verschlüsselten Ordner erstellt werden:

- Markdown-Dateien
- OC-Notizen

Andere Dateitypen wie Textdokumente, Tabellen und Präsentationen können nicht direkt in verschlüsselten Ordnern erstellt werden.

<img
src={require("./img/e2ee-folders/create-file-menu.png").default}
alt="Menü Neu in einem verschlüsselten Ordner mit deaktivierten Optionen für Dokumente, Tabellen und Präsentationen"
width="1920"
/>

Weitere Informationen finden Sie unter [Dateien und Ordner erstellen](./create-rename-move.md#dateien-und-ordner-erstellen).

## Verschlüsselten Ordner freigeben

Sie können einen Ende-zu-Ende-verschlüsselten Ordner für andere OpenCloud-Benutzer freigeben.

Die empfangende Person benötigt das Ordnerpasswort, um den verschlüsselten Ordner zu entsperren und auf seine Inhalte zuzugreifen. Übermitteln Sie das Passwort separat über einen sicheren Kanal.

Öffentliche Links werden für verschlüsselte Ordner oder Dateien nicht unterstützt.

## Verhalten bei Vorschau und Download

Einige Dateien in Ende-zu-Ende-verschlüsselten Ordnern können nicht direkt im Browser als Vorschau angezeigt werden.

In diesem Fall zeigt OpenCloud eine Meldung an, dass keine Vorschau verfügbar ist, und bietet stattdessen den Download der Datei an.

<img src={require("./img/e2ee-folders/no-preview-available.png").default} alt="Keine Vorschau für eine Datei in einem verschlüsselten Ordner verfügbar" width="1920"/>

## Einschränkungen

Ende-zu-Ende-verschlüsselte Ordner sind für die Speicherung sensibler Daten vorgesehen. Da ihre Inhalte verschlüsselt sind, werden einige OpenCloud-Funktionen und Clients nicht unterstützt.

Es gelten folgende Einschränkungen:

- Ende-zu-Ende-verschlüsselte Ordner sind derzeit für die Verwendung mit dem Web Client vorgesehen. Mobile und Desktop Clients unterstützen den E2EE-Ablauf nicht und sollten nicht verwendet werden, um auf verschlüsselte Ordner zuzugreifen oder sie zu ändern. Vorhandene verschlüsselte Dateien werden in nicht unterstützten Clients möglicherweise in ihrer verschlüsselten Form angezeigt. Dateien, die über diese Clients hinzugefügt werden, sind nicht Ende-zu-Ende verschlüsselt und können möglicherweise nicht im Web Client verwendet werden.
- Dateien und Ordner können nicht von einem anderen Speicherort in OpenCloud in einen verschlüsselten Ordner verschoben werden.
- Dateien in verschlüsselten Ordnern werden nicht in den Suchergebnissen angezeigt.
- Die gemeinsame Bearbeitung von Dateien in verschlüsselten Ordnern ist nicht verfügbar.
- Office-Dokumente können im Browser nicht mit Collabora geöffnet oder bearbeitet werden.
- Für verschlüsselte Dateien ist keine Vorschau im Browser verfügbar.
- Öffentliche Links werden für verschlüsselte Ordner oder Dateien nicht unterstützt.

Sie können vorhandene Dateien weiterhin mit dem Web Client direkt in einen verschlüsselten Ordner hochladen.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.