Earlier quoted context omitted.
I wonder if there is any requirement that the data be readable? I mean, you could store it in encrypted format, but keep the keys outside of Russia...
it would be foolish to not encrypt the data at rest and probably just as silly to keep the keys in the same location.
> Finally, any online service (including social networks, email, or messaging services) that uses encrypted data is now required to permit the Federal Security Service (FSB) to access and read their services’ encrypted communications, including providing any encryption keys.
It is not clear from this article also if you can encrpyt the user data and keep the key. But I guess that wouldn't be along of the spirit of this law.
[1] https://www.eff.org/deeplinks/2016/07/russia-asks-impossible...