Encrypting Channels
Encryption is only available when the administrator enables the function in Synology Chat Admin Console. When the function is enabled, you can encrypt channels or conversations, so messages will not be recognized by the administrator. This will further enhance the hierarchical control of access to Chat messages. However, you can only have an encrypted channel with users who have configured a passphrase.
Passphrases are for channel encryption will not be stored on the server.
To start using encrypted channels:
- Click Account and select Encryption to set up your passphrase.
- When setting up your passphrase, you can choose to download the private key, in case you forget it in the future.
- After setting up the passphrase, you can create an encrypted channel or conversation.
Note:
- Public channels cannot be encrypted.
To create an encrypted channel:
- Click the plus icon in the left column next to CHANNELS to view all channels in Chat.
- Click Create to create a channel.
- Select Private Channel and tick Encrypt to encrypt the channel.
- Configure the channel name and description, then click Create.
To create an encrypted conversation:
- Click the plus icon in the left column next to CONVERSATIONS to view all members in Chat.
- Tick Encrypt to encrypt the conversation.
- Select the members you would like to talk to, then click Create.
To decrypt a channel or conversation:
- Click Account and select Encryption to decrypt your channels or conversations.
- Enter your passphrase or upload the private key to decrypt the channel or conversation.
- Click OK to start viewing all encrypted channels and conversations.
To reset the private key when you forget your passphrase:
- Click Forgot passphrase when entering the passphrase.
- Enter your new passphrase.
- Click OK to reset your passphrase.
- Ask another user in the encrypted channel to rescue you in Member List.
To renew the private key when you think your key is insecure:
- Click Account and select Encryption > Renew private key.
- Enter your original passphrase.
- Click OK to renew your private key.
Note:
- When encryption is enabled, only users who have configured a passphrase can be selected from the member list.
- Encryption will be initiated every time you refresh your browser.
- Indexing service will be disabled in any encrypted channel or conversation. Therefore, mentions, hashtags, Open Graphic for URLs, and search functions will all be disabled in encrypted channels.
- Encrypted channel or conversation will be in read-only mode after the function is disabled in Synology Chat Admin Console.
- If users have joined multiple encrypted channels, they must ask members from each channel to rescue them respectively.