Enable and Manage Encryption
- Print
- DarkLight
Enable and Manage Encryption
- Print
- DarkLight
Article summary
Did you find this summary helpful?
Thank you for your feedback
This feature is currently in Private Preview.
For more information about getting started, see Manage B2 Cloud Storage at Scale: Enterprise Web Console.
For questions after implementation, contact the Product Team.
Server-side encryption (SSE) protects your data by encrypting it before Backblaze B2 Cloud Storage stores it on disk.
SSE can be enabled when a bucket is created or on an existing bucket.
SEE can be enabled or disabled on a bucket at any time. However, files that were encrypted while the feature was enabled remain encrypted.
These settings can be configured only by users with bucket-management permissions (Administrator or Bucket Creator with appropriate scope). They are not visible to users who only have object-level roles.
Enable or Disable Encryption on an Existing Bucket
- Sign in to your Backblaze organization.
- In the left navigation menu, select Buckets.
- Select the bucket name.
- Click Settings.
- On the General tab, enable or disable Encryption.
- Click Save.
All files that you upload to this bucket from now on will be encrypted by default. Encrypted objects are excluded from snapshots.
Verify Encrypted Files
- In the left navigation menu, select Buckets.
- Select the bucket name.
- On the Overview tab, in the Bucket Overview section, verify that Encryption is set to Enabled.
- Alternatively, select the Objects tab and select an object name.
- In the Technical Info section, verify that Encryption is set to AES256 (SSE-B2).
Was this article helpful?