Knowledge Base

Why don’t you encrypt my drives?

We don’t want to give you a false sense of security. Even if we claimed we encrypt user drives, you have no way of verifying if we really do.

Depending on your threat model and how much you trust us, you may find that having data encrypted at rest would be secure enough. In that case, you can manually install an OS with full-disk encryption using an ISO image, or store the files in something like a VeraCrypt container.

Keep in mind that even with full disk encryption, the decryption key is stored in RAM while the disk is mounted. It's technically possible for us, or anyone else that has access to the hypervisor running your VM, to dump the decryption keys from RAM, which would give an attacker full access to your unencrypted data. This applies for every server provider.

Again, if you have sensitive data that you want to store on our servers, the only way to do it securely is to only encrypt and decrypt the data outside of the server, on a trusted local machine. The decryption password or key should never be entered on the server.

Please rate this article to help us improve our Knowledge Base.

1 0




  RSS

BunkerVPS provides virtual private servers hosted in secure bunkers and underground datacenters.

BunkerVPS.com © All Rights Reserved.