2-Factor Authentication
Increase access security with 2FA/TOTP
Extensions for collaboration, security, media and administration.
Increase access security with 2FA/TOTP
Keep track of events with Activity stream and email notifications
Generate a Config Report
AI-powered document analysis, categorization and intelligent search
Send notifications to all users
Protect users from viruses and other malicious software
Prevent attackers from guessing user passwords
Edit office documents directly in your browser.
Enhance collaboration with user-defined sharing groups
Server-side encryption stores your files as ciphertext on disk. Anyone who canread the storage - a hosting provider, a stolen disk, a backup tape, an S3bucket - sees AES-256 ciphertext instead of your documents. It does not protectagainst an attacker who controls the running server, because the key livesthere.**How it works**Files are encrypted transparently on write and decrypted on read. Sharing,versions, trash bin and the desktop and mobile clients keep working; usersnotice nothing. Two modes are available: a single master key for the wholeinstance (recommended, no user interaction) or per-user keys derived from thelogin password.**Before you switch it on**Switching encryption on is a one-way decision in practice. `occencryption:decrypt-all` reports success but does not touch file versions or thetrash bin, and `occ encryption:disable` refuses while any encrypted fileremains. Going back therefore means discarding every file version and emptyingevery trash bin first. Decide before you enable it, not after.Existing files are not encrypted automatically - run `occencryption:encrypt-all` for that. Keep a backup of the key storage(`data/files_encryption`): without it, encrypted files are lost for good.---**Deutsch**Serverseitige Verschluesselung legt Dateien als Chiffrat auf der Platte ab. Werden Speicher lesen kann - ein Hoster, eine entwendete Platte, ein Sicherungsband,ein S3-Eimer - sieht AES-256-Chiffrat statt Ihrer Dokumente. Gegen einenAngreifer, der den laufenden Server beherrscht, hilft sie nicht, denn dort liegtder Schluessel.**Wie es arbeitet**Dateien werden beim Schreiben verschluesselt und beim Lesen entschluesselt.Freigaben, Versionen, Papierkorb sowie die Programme fuer Arbeitsplatz undTelefon laufen unveraendert weiter; Nutzer merken nichts davon. Zwei Betriebsarten:ein Hauptschluessel fuer die ganze Instanz (empfohlen, ohne Zutun der Nutzer)oder Schluessel je Konto, abgeleitet aus dem Anmeldepasswort.**Vor dem Einschalten lesen**Das Einschalten ist praktisch endgueltig. `occ encryption:decrypt-all` meldetErfolg, laesst Dateiversionen und Papierkorb aber verschluesselt liegen, und`occ encryption:disable` verweigert, solange noch eine verschluesselte Datei daist. Der Rueckweg bedeutet deshalb: alle Dateiversionen loeschen und allePapierkoerbe leeren. Entscheiden Sie das vorher, nicht hinterher.Bestandsdateien werden nicht von allein verschluesselt - dafuer gibt es `occencryption:encrypt-all`. Sichern Sie die Schluesselablage(`data/files_encryption`): ohne sie sind verschluesselte Dateien endgueltigverloren.PHP 8.4 fork maintained by BW-Tech GmbH for owncloud.online.
Integrate S3 object storages as external storages
This application enables a pop-up window when a user first logs into owncloud.online. This window welcomes new users to owncloud.online, and contains links to the standard owncloud.online desktop client, Android app, and the iOS app. The window also shows a link for accessing owncloud.online via WebDAV. At any time, the first run wizard button can be opened again via the link on the personal page. The First run wizard can be customized to meet specific design goals, or to change links and messages. Create an appropriate theme following the Theming documentation, and changes to the look and feel of this Wizard are simple. More information is available in the First run wizard documentation, as well as the theming documentation. This is a PHP 8.4 fork maintained by BW-Tech GmbH for owncloud.online.
Explore, show and share your image collections
Share with externals easily via email address
Provide assistance by logging in as another user
Integrate LDAP user directories
Browse, install and update apps from the marketplace or a local catalog inside owncloud.online
Explore, show and share your media collections
Notification system for internal events
OAuth2 token-based authorization interface
ONLYOFFICE connector
Authentication and SSO with OpenID Connect (OIDC)
Define password policies for user and public link passwords
Viewer for PDF files
Leverage object storage via S3 as primary storage
Edit text files on the fly
Adjust your search term.