Security is an essential feature of the service: Oodrive Technologies has maximized the degree of security at all levels to optimize the confidentiality and the reliability of its customers’ data:
Firewall and security breach detection.
The network is protected by two firewalls and monitored by security breach detection systems. Additionally, Oodrive monitors and analyzes the firewall logs to proactively identify any security threat. Oodrive also works with the ARES group to continuously improve the monitoring of servers and periodically perform security breach tests.
Reliability and security of the internal systems
Within the firewall perimeter, the translation of network addresses, the redirection of portals, the disguising of IP addresses, the construction of non-routable IP addresses, and other measures protect the system.
All the network management components, the SSL accelerators, power distributors, web servers and application servers are configured in a redundant architecture.
Encryption of the data
Oodrive uses the most powerful encryption products to protect the customers’ data and transfers:
-
Transfer of Data: we use Verisign 128 bit SSL encryption certification, as well as RSA 1024 bit public keys. The browser’s lock icon indicates that the data has been tested at the time of transfer. A policy certificate can also be implemented at each user’s location in order to individually encrypt all the transfers.
-
Databases: The user names and passwords for the customers are encoded by MD5 128 bit keys rendering them impossible to be read by anyone other the authorized servers.
-
Storage of files: The moment they are registered on the disks, the files are encrypted by a Triple DES 192 bit key. It is impossible to read the files directly from the disks.
User Authentification
The users cannot access Oodrive unless they have a valid combination of user name and password, encoded by SSL during the entire transfer. Each user is uniquely identified by a cookie during the encrypted session. To reinforce security, the session key is automatically encoded and redefined in the background at regular intervals.