Skip to main content

Security

Files.com gives you account access controls, network restrictions, and platform safeguards to protect your site during initial setup, hardening, or incident response.

Start With Site-Wide Security Settings

Use Security Settings for global controls: protocol enablement, session policy, and brute force protections.

Authentication And Password Policy

Use Passwords and User Password Policies to define credential requirements. Add a second factor with Two-Factor Authentication (2FA). For centralized identity, see SSO (Single Sign-On).

Network Access Restrictions

IP Whitelisting and Access Control by Country restrict where users can connect from, across every protocol and client. We do not recommend either one for most sites. Both lock out legitimate users without reliably stopping an attacker, and they exist for customers whose compliance regime requires them.

Transport And Web Security

Encryption details live under Encryption. Use TLS/SSL Security and HTTP Security Headers when you harden browser-based access.

Hardening And Threat Scenarios

Use Configuring Files.com For Maximum Security as the default hardening checklist. Use Ransomware for recovery planning and operational controls. Use Malware Scanning to check new uploads to a folder for threats before anyone can download them.

Compliance Enforcement

Use FedRAMP Security Mode to set a group of security settings to the values FedRAMP requires and lock them while the mode is enabled.