> For the complete documentation index, see [llms.txt](https://docs.greennode.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.greennode.ai/vstorage/datasync/bao-mat.md).

# Security

#### **Overview**

GreenNode is responsible for ensuring the security of both the physical and virtual infrastructures it provides. In addition, GreenNode offers services that let customers deploy their own security functions for their systems hosted on GreenNode.

Security is the top priority at GreenNode. GreenNode customers benefit from the highest-standard security protocols designed for organizations and enterprises. Security is a shared responsibility between GreenNode and the customer. On the customer side, this includes:

* Managing access to the customer's storage resources by managing access permissions to those resources.
* Managing user account credentials such as **username** and **password**.
* Applying correct, IAM-based system access authorization for the customer's resources at GreenNode.

To protect customer information and the data customers store on the DataSync service, the following security controls are currently applied:

1. **Access control security:** GreenNode uses IAM to manage user access to DataSync resources. IAM lets businesses create and manage access policies for each DataSync resource, helping ensure that only those with the necessary access rights can access the data.
2. **Data in transit security.** *(This item is truncated in the source page; see Data in Transit Security for details.)*
3. **Security of data stored on vStorage:** GreenNode provides mechanisms for encrypting the content of files (objects) stored on the vStorage service:
   * **Client-side encryption:** the user is responsible for managing the key and the encryption workload. Data is encrypted on the user's server or at the user's application layer.

GreenNode continually works to strengthen its security measures to keep customer data safe.

***
