<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Multiple account privacy]]></title><description><![CDATA[<p dir="auto">Hi There --</p>
<p dir="auto">I want to offer my friend an account in my Nextcloud instance but want to assure him that I can't look at his files. From what I'm reading on the old internet it looks like I'd have access to his files through my admin account. Is this true? If so, is there a way to configure it so his files are absolutely private?</p>
]]></description><link>https://forum.cloudron.io/topic/6919/multiple-account-privacy</link><generator>RSS for Node</generator><lastBuildDate>Sun, 17 May 2026 15:57:08 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/6919.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 02 May 2022 19:48:05 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Multiple account privacy on Tue, 17 May 2022 21:41:04 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> Ha -- it didn't. I figured out after I set it up I still had access to his files <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
]]></description><link>https://forum.cloudron.io/post/48079</link><guid isPermaLink="true">https://forum.cloudron.io/post/48079</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Tue, 17 May 2022 21:41:04 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Thu, 05 May 2022 17:55:17 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ropyro" aria-label="Profile: Ropyro">@<bdi>Ropyro</bdi></a> said in <a href="/post/47241">Multiple account privacy</a>:</p>
<blockquote>
<p dir="auto">I just installed another instance of Nextcloud for my friend</p>
</blockquote>
<p dir="auto">If this relieves his privacy concerns... well. OK I guess <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f923.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--rolling_on_the_floor_laughing" style="height:23px;width:auto;vertical-align:middle" title=":rolling_on_the_floor_laughing:" alt="🤣" /><br />
You are still the admin and can view the data..</p>
<p dir="auto"><img src="/assets/uploads/files/1651772652245-e823a72f-d47f-4089-a005-e93a788108e1-grafik.png" alt="e823a72f-d47f-4089-a005-e93a788108e1-grafik.png" class=" img-fluid img-markdown" /><br />
(alt: <a href="https://fsfe.org/contribute/spreadtheword.en.html" target="_blank" rel="noopener noreferrer nofollow ugc">There is no cloud, just other people's computers - Sticker</a> by <a href="http://fsfe.org" target="_blank" rel="noopener noreferrer nofollow ugc">fsfe.org</a>)</p>
<p dir="auto">But still, there must be a solution for this.<br />
I don't want to believe Nextcloud has no good solution for this..</p>
]]></description><link>https://forum.cloudron.io/post/47257</link><guid isPermaLink="true">https://forum.cloudron.io/post/47257</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Thu, 05 May 2022 17:55:17 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Thu, 05 May 2022 16:17:23 GMT]]></title><description><![CDATA[<p dir="auto">Thanks for everyone for their input on this. I love the community here. It's really surprising to me that this functionality isn't clear/straightforward. I've moved forward with a straightforward solution. I just installed another instance of Nextcloud for my friend. A little clunky but it works. It's just my personal Cloudron server anyway.</p>
]]></description><link>https://forum.cloudron.io/post/47241</link><guid isPermaLink="true">https://forum.cloudron.io/post/47241</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Thu, 05 May 2022 16:17:23 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 15:38:27 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/timconsidine" aria-label="Profile: timconsidine">@<bdi>timconsidine</bdi></a> said in <a href="/post/47078">Multiple account privacy</a>:</p>
<blockquote>
<p dir="auto">Seafile is working well for me.<br />
Sadly self-hosted on another VPS instead of Cloudron at this stage (until some nice brave person packages it for Cloudron!)</p>
</blockquote>
<p dir="auto">Upvote here:<br />
<a href="https://forum.cloudron.io/post/1237">https://forum.cloudron.io/post/1237</a></p>
]]></description><link>https://forum.cloudron.io/post/47080</link><guid isPermaLink="true">https://forum.cloudron.io/post/47080</guid><dc:creator><![CDATA[jdaviescoates]]></dc:creator><pubDate>Tue, 03 May 2022 15:38:27 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 13:43:29 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mehdi" aria-label="Profile: mehdi">@<bdi>mehdi</bdi></a> I moved my file storage/sharing from Nextcloud to Seafile.<br />
Nextcloud works well but is just bloat-ware if you don't use the collab features.<br />
Seafile is working well for me.<br />
Sadly self-hosted on another VPS instead of Cloudron at this stage (until some nice brave person packages it for Cloudron!)<br />
Maybe I'm cheap and easy to please but client software (on Mac) works fine for me, as both syncing client and remote drive client.</p>
<p dir="auto">Having said all that, I haven't explored the E2E encryption on multi-user basis.</p>
]]></description><link>https://forum.cloudron.io/post/47078</link><guid isPermaLink="true">https://forum.cloudron.io/post/47078</guid><dc:creator><![CDATA[timconsidine]]></dc:creator><pubDate>Tue, 03 May 2022 13:43:29 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 13:35:05 GMT]]></title><description><![CDATA[<p dir="auto">As an alternative, I know that <a href="https://www.seafile.com/" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.seafile.com/</a> is a file storage solution which offers end2end encryption, but when I last tried it (admittedly a few years ago) the client software was <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f4a9.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--hankey" style="height:23px;width:auto;vertical-align:middle" title=":hankey:" alt="💩" /></p>
]]></description><link>https://forum.cloudron.io/post/47077</link><guid isPermaLink="true">https://forum.cloudron.io/post/47077</guid><dc:creator><![CDATA[mehdi]]></dc:creator><pubDate>Tue, 03 May 2022 13:35:05 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 13:22:26 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mehdi" aria-label="Profile: mehdi">@<bdi>mehdi</bdi></a> also saw that the E2E app is more abandonware then anything. That's why I did not mention it more.</p>
<p dir="auto">But to have no real and easy setup for this on Nextcloud is a real shame.</p>
]]></description><link>https://forum.cloudron.io/post/47075</link><guid isPermaLink="true">https://forum.cloudron.io/post/47075</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Tue, 03 May 2022 13:22:26 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 12:47:18 GMT]]></title><description><![CDATA[<p dir="auto">Basically, what you want for this is end-to-end encryption (and I know a bit about this, it's literally my job to implement E2EE ^^).</p>
<p dir="auto">The problem is that the nextcloud app that provides E2EE is <em>bad</em>, like really bad, like "my files just disappeared, i have no idea why" bad.</p>
<p dir="auto">So, long story short, there is no simple way for you to provide this service to your friend with nextcloud with you not being able to look at their files.</p>
]]></description><link>https://forum.cloudron.io/post/47073</link><guid isPermaLink="true">https://forum.cloudron.io/post/47073</guid><dc:creator><![CDATA[mehdi]]></dc:creator><pubDate>Tue, 03 May 2022 12:47:18 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Tue, 03 May 2022 00:39:02 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> Man, what a mess! I didn't have time to look into it today as deeply as you did. Can't thank you enough!</p>
]]></description><link>https://forum.cloudron.io/post/47038</link><guid isPermaLink="true">https://forum.cloudron.io/post/47038</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Tue, 03 May 2022 00:39:02 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 22:58:57 GMT]]></title><description><![CDATA[<p dir="auto">Ok... this is getting into a convoluted mess.</p>
<p dir="auto">Now I found out there should be a per-user-encryption:<br />
<a href="https://docs.nextcloud.com/server/latest/admin_manual/configuration_files/encryption_details.html#key-type-user-key" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/latest/admin_manual/configuration_files/encryption_details.html#key-type-user-key</a></p>
<p dir="auto">Funny how this is missing in the doc for the encryption ooc commands...........<br />
<a href="https://docs.nextcloud.com/server/23/admin_manual/configuration_server/occ_command.html#encryption-label" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/23/admin_manual/configuration_server/occ_command.html#encryption-label</a></p>
<p dir="auto">And also not mentioned in the main doc where they show and tell about the <code>Enabling users file recovery keys</code>.<br />
<img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f621.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--rage" style="height:23px;width:auto;vertical-align:middle" title=":rage:" alt="😡" /></p>
<p dir="auto">I've set up a new Nextcloud (with user managed by the app) and installed the <code>Default Encryption Module</code> then went into the Nextcloud app web-terminal  and did a:</p>
<pre><code>root@f6665ea8-5f0a-41f7-b8ae-be1719062c33:/app/code# sudo -u www-data php -f /app/code/occ encryption:disable-master-key
Warning: Only perform this operation for a fresh installations with no existing encrypted data! There is no way to enable the master key again. We strongly recommend to keep the master key, it provides significant performance improvements and is easier to handle for both, users and administrators. Do you really want to switch to per-user keys? (y/n) y
Master key successfully disabled.
</code></pre>
<p dir="auto">Then I enabled the server wide encryption.</p>
<p dir="auto"><img src="/assets/uploads/files/1651529995329-0f395350-8e58-4155-b335-02499f4ec9fa-grafik.png" alt="0f395350-8e58-4155-b335-02499f4ec9fa-grafik.png" class=" img-fluid img-markdown" /><br />
Ok understandable because: <a href="https://docs.nextcloud.com/server/latest/admin_manual/configuration_files/encryption_configuration.html#enabling-users-file-recovery-keys" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/latest/admin_manual/configuration_files/encryption_configuration.html#enabling-users-file-recovery-keys</a></p>
<p dir="auto">So I set a recovery key. Good? Ehhhh... with that I can decrypt files from a user if he allows it.<br />
Wait... if the user allows it? By default it's not allowed.<br />
So if I try this in the web-terminal:</p>
<pre><code>root@f6665ea8-5f0a-41f7-b8ae-be1719062c33:/app/code# sudo -u www-data php -f /app/code/occ encryption:decrypt-all eha
Disable server side encryption... done.


You are about to start to decrypt all files stored in eha's account.
It will depend on the encryption module and your setup if this is possible.
Depending on the number and size of your files this can take some time
Please make sure that no user access his files during this process!

Do you really want to continue? (y/n) y
prepare encryption modules...

Prepare "Default encryption module"

You can only decrypt the users files if you know
the users password or if he activated the recovery key.

Do you want to use the users login password to decrypt all files? (y/n) n
No recovery key available for user eha
Module "Default encryption module" does not support the functionality to decrypt all files again or the initialization of the module failed!
 aborted.
Server side encryption remains enabled
</code></pre>
<p dir="auto">So now I impersonate the user... and allow it? <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f914.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--thinking_face" style="height:23px;width:auto;vertical-align:middle" title=":thinking_face:" alt="🤔" /><br />
<img src="/assets/uploads/files/1651531149912-d78a56dd-a540-4330-afbf-0ce050854698-grafik-resized.png" alt="d78a56dd-a540-4330-afbf-0ce050854698-grafik.png" class=" img-fluid img-markdown" /><br />
Please no....<br />
<img src="/assets/uploads/files/1651531184805-0611b78e-e775-42c7-9957-76a191842c96-grafik-resized.png" alt="0611b78e-e775-42c7-9957-76a191842c96-grafik.png" class=" img-fluid img-markdown" /><br />
Please don't tell me now that I can decrypt the user files afterwards.</p>
<pre><code>root@f6665ea8-5f0a-41f7-b8ae-be1719062c33:/app/code# sudo -u www-data php -f /app/code/occ encryption:decrypt-all eha
Disable server side encryption... done.


You are about to start to decrypt all files stored in eha's account.
It will depend on the encryption module and your setup if this is possible.
Depending on the number and size of your files this can take some time
Please make sure that no user access his files during this process!

Do you really want to continue? (y/n) y
prepare encryption modules...

Prepare "Default encryption module"

You can only decrypt the users files if you know
the users password or if he activated the recovery key.

Do you want to use the users login password to decrypt all files? (y/n) n
Please enter the recovery key password: 
 done.





 starting to decrypt files... finished 
 [============================]


Files for following users couldn't be decrypted, 
maybe the user is not set up in a way that supports this operation: 
    eha
        /eha/files/allowed_recovery.md
        /eha/files/deny_recovery.md

Server side encryption remains enabled
</code></pre>
<p dir="auto">thank god.</p>
<p dir="auto">If I now look into the security tab as the user:<br />
<img src="/assets/uploads/files/1651531320756-1d3fc02f-985b-4591-97e5-ed6559e491e5-grafik.png" alt="1d3fc02f-985b-4591-97e5-ed6559e491e5-grafik.png" class=" img-fluid img-markdown" /><br />
This looks bugged.<br />
So disable it again:<br />
<img src="/assets/uploads/files/1651531340264-6f8a9e84-91cb-4d15-88c3-6be0f9182c30-grafik.png" alt="6f8a9e84-91cb-4d15-88c3-6be0f9182c30-grafik.png" class=" img-fluid img-markdown" /><br />
and enable it again:<br />
<img src="/assets/uploads/files/1651531354872-ba9fedb6-867a-4e9c-a23f-adca13ccda0d-grafik.png" alt="ba9fedb6-867a-4e9c-a23f-adca13ccda0d-grafik.png" class=" img-fluid img-markdown" /><br />
Hmmm this <code>Recovery Key enabled</code> did never happen as impersonated user.<br />
So this could be used as an indicator if an admin tried to decrypt your files... good to know I guess.</p>
<p dir="auto">So now I can decrypt the user files with the recovery password?</p>
<pre><code>root@f6665ea8-5f0a-41f7-b8ae-be1719062c33:/app/code# sudo -u www-data php -f /app/code/occ encryption:decrypt-all eha
Disable server side encryption... done.


You are about to start to decrypt all files stored in eha's account.
It will depend on the encryption module and your setup if this is possible.
Depending on the number and size of your files this can take some time
Please make sure that no user access his files during this process!

Do you really want to continue? (y/n) y
prepare encryption modules...

Prepare "Default encryption module"

You can only decrypt the users files if you know
the users password or if he activated the recovery key.

Do you want to use the users login password to decrypt all files? (y/n) n
Please enter the recovery key password: 
 done.





 starting to decrypt files... finished 
 [============================]


all files could be decrypted successfully!
Server side encryption remains enabled
</code></pre>
<p dir="auto">Yep worked.<br />
...<br />
Okay I will write that down a bit clearer tomorrow. (And try this again with LDAP instead of user management by the app)</p>
<p dir="auto">My head is smoking.<br />
This documentation of Nextcloud is a nightmare!</p>
]]></description><link>https://forum.cloudron.io/post/47035</link><guid isPermaLink="true">https://forum.cloudron.io/post/47035</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 22:58:57 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 22:28:42 GMT]]></title><description><![CDATA[<p dir="auto">You can always encrypt before uploading.</p>
<p dir="auto">Or use <a href="http://internxt.com" target="_blank" rel="noopener noreferrer nofollow ugc">internxt.com</a> which does ZK e2e for you.</p>
]]></description><link>https://forum.cloudron.io/post/47034</link><guid isPermaLink="true">https://forum.cloudron.io/post/47034</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Mon, 02 May 2022 22:28:42 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 21:10:32 GMT]]></title><description><![CDATA[<p dir="auto">And here we go for another round ...<br />
<a href="https://apps.nextcloud.com/apps/impersonate" target="_blank" rel="noopener noreferrer nofollow ugc">https://apps.nextcloud.com/apps/impersonate</a></p>
<blockquote>
<p dir="auto">This app is not compatible with instances that have encryption enabled.</p>
</blockquote>
<p dir="auto"><img src="/assets/uploads/files/1651525695942-01388500-57d0-47d6-b1f0-330a3e5b6e02-grafik.png" alt="01388500-57d0-47d6-b1f0-330a3e5b6e02-grafik.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">But.... it is? Its working? Right now?</p>
]]></description><link>https://forum.cloudron.io/post/47033</link><guid isPermaLink="true">https://forum.cloudron.io/post/47033</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 21:10:32 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 21:06:04 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ropyro" aria-label="Profile: Ropyro">@<bdi>Ropyro</bdi></a></p>
<blockquote>
<p dir="auto">Encryption keys are stored only on the Nextcloud server, eliminating exposure of your data to third-party storage providers. The encryption app does not protect your data if your Nextcloud server is compromised, and it does not prevent Nextcloud administrators from reading user’s files. This would require client-side encryption, which this app does not provide. If your Nextcloud server is not connected to any external storage services then it is better to use other encryption tools, such as file-level or whole-disk encryption.</p>
</blockquote>
<p dir="auto"><img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f610.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--neutral_face" style="height:23px;width:auto;vertical-align:middle" title=":|" alt="😐" /><br />
This is by design.<br />
<a href="https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html</a><br />
The first big yellow warning.</p>
<hr />
<p dir="auto">ps: Thanks for the Beer! Cheers <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f37b.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--beers" style="height:23px;width:auto;vertical-align:middle" title=":beers:" alt="🍻" /></p>
]]></description><link>https://forum.cloudron.io/post/47032</link><guid isPermaLink="true">https://forum.cloudron.io/post/47032</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 21:06:04 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:56:00 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> Ha! I'm bouncing back and forth between this and another project right now. I appreciate all your help. Gives me a direction to play around with. Beer forthcoming <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
]]></description><link>https://forum.cloudron.io/post/47031</link><guid isPermaLink="true">https://forum.cloudron.io/post/47031</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Mon, 02 May 2022 20:56:00 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:54:31 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ropyro" aria-label="Profile: Ropyro">@<bdi>Ropyro</bdi></a> Nah that's exactly what I am looking at.</p>
<p dir="auto">Also this:<br />
<a href="https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html#enabling-users-file-recovery-keys" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html#enabling-users-file-recovery-keys</a></p>
<p dir="auto">Does not exist for me.</p>
<p dir="auto">If you want to team up on this we can do a discord call or something <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f604.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--smile" style="height:23px;width:auto;vertical-align:middle" title=":D" alt="😄" /></p>
]]></description><link>https://forum.cloudron.io/post/47030</link><guid isPermaLink="true">https://forum.cloudron.io/post/47030</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:54:31 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:50:33 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> I mean, I see an option to enable "server-side" encryption on the admin/security page but I assume that's different than what you're doing?</p>
]]></description><link>https://forum.cloudron.io/post/47029</link><guid isPermaLink="true">https://forum.cloudron.io/post/47029</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Mon, 02 May 2022 20:50:33 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:43:25 GMT]]></title><description><![CDATA[<p dir="auto">I must be missing something?</p>
<blockquote>
<p dir="auto">Now you must log out and then log back in to initialize your encryption keys.</p>
</blockquote>
<blockquote>
<p dir="auto">When you log back in, there is a checkbox for enabling encryption on your home storage. This is checked by default. Un-check to avoid encrypting your home storage.</p>
</blockquote>
<p dir="auto">This never happened? I must be missing something..</p>
]]></description><link>https://forum.cloudron.io/post/47028</link><guid isPermaLink="true">https://forum.cloudron.io/post/47028</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:43:25 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:34:19 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> Man, thanks for doing the leg-work here. I'll be buying you a beer <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=11345d81604" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
]]></description><link>https://forum.cloudron.io/post/47027</link><guid isPermaLink="true">https://forum.cloudron.io/post/47027</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Mon, 02 May 2022 20:34:19 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:33:21 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> digging deeper</p>
]]></description><link>https://forum.cloudron.io/post/47026</link><guid isPermaLink="true">https://forum.cloudron.io/post/47026</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:33:21 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:35:22 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ropyro" aria-label="Profile: Ropyro">@<bdi>Ropyro</bdi></a> Okay so here are my first findings, which are.. well. Bad.</p>
<p dir="auto"><a href="https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.nextcloud.com/server/23/admin_manual/configuration_files/encryption_configuration.html</a></p>
<p dir="auto">I followed this doc.</p>
<p dir="auto"><img src="/assets/uploads/files/1651523364685-94feeba2-702b-4c96-aa1f-8b7b5fe53144-grafik-resized.png" alt="94feeba2-702b-4c96-aa1f-8b7b5fe53144-grafik.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Hmm well, lets try it with the cloudron file manager.</p>
<p dir="auto"><img src="/assets/uploads/files/1651523407483-fc4980fd-250d-44e6-87f2-6996b15c62ab-grafik.png" alt="fc4980fd-250d-44e6-87f2-6996b15c62ab-grafik.png" class=" img-fluid img-markdown" /></p>
<p dir="auto"><img src="/assets/uploads/files/1651523696229-2c2a2e90-9ef7-46ce-80e6-9cea109c8657-grafik-resized.png" alt="2c2a2e90-9ef7-46ce-80e6-9cea109c8657-grafik.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Good right?<br />
Nope.</p>
<p dir="auto"><img src="/assets/uploads/files/1651523479613-9580023e-4b9c-4a06-a897-735555f653e9-grafik-resized.png" alt="9580023e-4b9c-4a06-a897-735555f653e9-grafik.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1651523512866-bda46781-9e6f-41b2-ac5d-130a37dc354f-grafik-resized.png" alt="bda46781-9e6f-41b2-ac5d-130a37dc354f-grafik.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1651523549822-fde0c199-63f9-4a20-bcf9-80c4b784ac7f-grafik-resized.png" alt="fde0c199-63f9-4a20-bcf9-80c4b784ac7f-grafik.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1651523578377-6c918f05-e0fb-458e-92ab-51ad09ffd901-grafik-resized.png" alt="6c918f05-e0fb-458e-92ab-51ad09ffd901-grafik.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.cloudron.io/post/47025</link><guid isPermaLink="true">https://forum.cloudron.io/post/47025</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:35:22 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:26:26 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> It's gotta be possible. Right? I mean, I've used paid versions of Nextcloud in the past. I have to assume they didn't have access to my files. I hope, anyway.</p>
]]></description><link>https://forum.cloudron.io/post/47024</link><guid isPermaLink="true">https://forum.cloudron.io/post/47024</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Mon, 02 May 2022 20:26:26 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:24:33 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/brutalbirdie" aria-label="Profile: BrutalBirdie">@<bdi>BrutalBirdie</bdi></a> Ha -- yea, I see all that.</p>
]]></description><link>https://forum.cloudron.io/post/47022</link><guid isPermaLink="true">https://forum.cloudron.io/post/47022</guid><dc:creator><![CDATA[Ropyro]]></dc:creator><pubDate>Mon, 02 May 2022 20:24:33 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:07:25 GMT]]></title><description><![CDATA[<p dir="auto"><a href="https://github.com/nextcloud/impersonate/issues/41#issuecomment-386062283" target="_blank" rel="noopener noreferrer nofollow ugc">https://github.com/nextcloud/impersonate/issues/41#issuecomment-386062283</a></p>
<blockquote>
<p dir="auto">with E2E it doesn't matter because you can't open the files on the server. In other words the admin can impersonate you but without your mnemonic key they still can't access your E2E files.</p>
</blockquote>
<p dir="auto">Not sure how credible this user is tho. Still looking deeper.</p>
<hr />
<p dir="auto">Ehh I will just test it now.</p>
]]></description><link>https://forum.cloudron.io/post/47020</link><guid isPermaLink="true">https://forum.cloudron.io/post/47020</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:07:25 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple account privacy on Mon, 02 May 2022 20:02:42 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ropyro" aria-label="Profile: Ropyro">@<bdi>Ropyro</bdi></a> Don't run of too fast, I am reading a bit deeper into this...<br />
I know Nextcloud Admins can impersonate to view Data of other users.<br />
This should <strong>not</strong> work if  server side encryption is enabled.</p>
<p dir="auto">Read threw the doc of Nextcloud about the pros and cons about server side encryption.</p>
]]></description><link>https://forum.cloudron.io/post/47019</link><guid isPermaLink="true">https://forum.cloudron.io/post/47019</guid><dc:creator><![CDATA[BrutalBirdie]]></dc:creator><pubDate>Mon, 02 May 2022 20:02:42 GMT</pubDate></item></channel></rss>