cancel
Showing results for 
Search instead for 
Did you mean: 

Content Encryption

sarathkumarpk
Champ in-the-making
Champ in-the-making
How can we encrypt content in alfresco to prevent viewing of data by system administrators without compromising lucene fulltext search and content transformation
5 REPLIES 5

mrogers
Star Contributor
Star Contributor
Someone asked the same question a while ago.   You will find the discussion in these forums.

The bottom line is that you need to be able to trust your administrators.

ghernando
Champ in-the-making
Champ in-the-making
It would be nice to be able to have the data in alf_dat area encrypted to avoid OS greps and browsing of the data in the repository.
Is there some place in the code that might allow something like a Spring interceptor that would allow the data to be encrypted when written to alf_dat and decrypted when it is retrieved?
Or a direct change to the Java code.
Or is the read/write action to the repository not centralized to allow something like that?
If so, where is a good place to look in the code for this?
The application, preview, lucene index should be not affected.

flopez
Champ in-the-making
Champ in-the-making
Hi!

This post is rom 2008, now being 2010, does alfresco support data encryption on tranfer, and data encryption at rest such as 256-bit AES SSL?

klamerus
Champ in-the-making
Champ in-the-making
Anyone that feels it's sufficient to say you have to be able to trust your administrators doesn't understand the corporate world whatsoever.  It's absolutely necessary these days with government backed (governments to be left unnamed) insiders planted in major companies that are required to have these employees to do business in these countries to have encrypted content.  It's not just to block "administrators".  Hackers exist within all companies (almost certainly even Alfresco) who are constantly looking for opportunities to take intellectual property.  There has to be a mechanism to encrypt files at rest and the fact that all the major companies (OpenText, FileNet, Documentum, etc.) that store files at rest have these functionality demonstrates this.

mrogers
Star Contributor
Star Contributor
An encrypted content store is available for Alfresco Enterprise 4.2 and 5.0

http://docs.alfresco.com/5.0/concepts/encrypted-cs-home.html