Security Checklist: 3 Data Encryption

For optimal security, encrypt your data in transit and at rest.

Encrypt data in transit

To protect your data in transit, obtain a TLS/SSL certificate so you can run your production server on the HTTPS protocol. ​
See:
SSL Configuration
HTTPS Best Practices for FileCloud
Changing a Default Port or Web Server Setting
Enforcing TLS 1.2 and TLS 1.3 and Strong Ciphers - FileCloud Docs - Server
Configure Cluster Authentication with SSL

Encrypt data at rest

Protect the confidentiality and integrity of your stored files by configuring managed storage with encryption keys.

For detailed information, see:
Setting up Managed Storage Encryption - FileCloud Docs - Server
Setting up Managed S3 Storage Encryption - FileCloud Docs - Server
S3 Storage Encryption with AWS Cross-Account KMS Key