2.8 Using File Encryption

If you choose, Novell iFolder can use an encryption passphrase as the key to encrypt your data on the server and during transmission. After you set your encryption passphrase, it must be entered whenever you log in to the iFolder server.

The files in your local Novell iFolder directory reside on your workstation in plain text and on the iFolder server in encrypted form. To ensure security and privacy during transmission and storage, iFolder encrypts the files using the encryption passphrase you specified when you installed iFolder client.

Encryption occurs before the files leave your workstation to travel securely across an Internet connection to be uploaded to, and stored on, the iFolder server. The files remain encrypted on the iFolder Server and during downloads to your workstations. The iFolder client decrypts the downloaded files as they arrive on your local workstations.

After you successfully log in to iFolder, a Get Passphrase dialog box opens where you can enter your encryption passphrase.

2.8.1 Remembering Your Encryption Passphrase

If you choose, iFolder can remember your passphrase. The next time you begin the login process, this passphrase exchange will be done automatically; no dialog box will appear.

To turn off the automatic passphrase exchange, right-click the iFolder icon, click Account Information > Preferences, uncheck the Remember Passphrase check box, then click Apply.

2.8.2 Recovering Your Encryption Passphrase

Encryption Passphrase Recovery is an option you can set during the installation process, if your iFolder administrator enables it. This option is highly recommended because it allows the iFolder administrator to help you access your files on the iFolder server if you ever forget your iFolder encryption passphrase.

Some iFolder administrators enable Passphrase Recovery as a default, making it mandatory for all users. If so, they can reveal your encryption passphrase after authenticating your identity.

What to Do If You Forget Your Encryption Passphrase

Because you enter the encryption passphrase only after successfully logging in with the user ID and password, you can guess multiple times without consequence. However, if you cannot recall your encryption passphrase, and if you enabled the Passphrase Recovery option, your administrator can send you a hint to help you recall your encryption passphrase.

If you disabled Passphrase Recovery, your iFolder administrator can reset your account as a last resort. However, this means that your files on the iFolder server will be deleted along with the metadata about your account. The only good copy of your data resides in the most current local iFolder directory among your workstations.

Before the administrator resets your server account, log out of all client sessions with the iFolder server. After the reset, log in to the iFolder server from the workstation that has the most current version of your files. During login, you will set and confirm a new encryption passphrase.

Upon successful login, your files will synchronize with the iFolder server. This upload time will vary, depending on the amount of data to be uploaded and the speed of your Internet connection.