Security Checklist: 3 Data Encryption

For optimal security, encrypt your data in transit and at rest.

Encrypt data in transit

To protect your data in transit, obtain an SSL certificate so you can run your production server on the HTTPS protocol.
See:
SSL Configuration
HTTPS Best Practices for FileCloud
Changing a Default Port or Web Server Setting

For information about connecting with TLS, see:
Enforcing TLS 1.2 and TLS 1.3 and Strong Ciphers - FileCloud Docs - Server
Configure MongoDB Cluster to Use TLS-SSL with Cluster Authentication and Mongodb Authentication on Linux

Encrypt data at rest

Protect the confidentiality and integrity of your stored files by configuring managed storage with encryption keys.

For detailed information, see:
Setting up Managed Storage Encryption - FileCloud Docs - Server
Setting up Managed S3 Storage Encryption - FileCloud Docs - Server
S3 Storage Encryption with AWS Cross-Account KMS Key