Live data from Hacker News

Wuala: Secure Cloud Storage

wuala.com

101–110 of 207 posts

Re: Wuala: Secure Cloud Storage

#101
post #30

Earlier quoted context omitted.

> "If you are a software engineer and would like to see how Wuala works, feel free to apply for a job at Wuala." A non-answer if I've ever seen one. What about someone who applies for a job at Wuala, gets rejected, but still wants to look at the source code?

And that's the only use case that bothers you?

You only need one counter example to poke a hole in a position.

Re: Wuala: Secure Cloud Storage

#103
post #96

Hello there, Gianluca from Wuala here. First, this is how Wuala works: You as an user place a file in the client. The file gets encrypted (including using your password and username) and then gets uploaded and split into different pieces. We are currently using AES-256 for encryption (and RSA 2048 fpr signature and key exchange when sharing a folder and SHA-256 for integrity checks). The password does NOT get transmi…

Are you planning on allowing camera upload? I can't get people using your product without it...

Re: Wuala: Secure Cloud Storage

#104
post #88
post #79

Earlier quoted context omitted.

For Windows users: BoyCryptor 1.x is fully compatible with EncFS and features a GUI.

BoxCryptor is most definitely not fully compatible with EncFS - it doesn't even support the default filename encoding option that encfs uses.

Some older version supports that. Maybe they changed their license model, but it definitely had support for that in the past.

Re: Wuala: Secure Cloud Storage

#105
post #41
post #9

I recently tried replacing Dropbox with Wuala because of privacy concerns. I failed, and in the process realized how successful Dropbox has been in creating an awesome user experience! I'm still looking for a locally encrypted Dropbox-alternative. So if any of you are making one, please speak up :) (Edit) I should specify that it was the user experience that made me give up on Wuala, and any proper Dropbox alternativ…

We were looking at using AeroFS with our own servers, but it doesn't appear to support encryption on the server. I may be wrong about this?

AeroFS only stores data on clients (unless you run your own team server) and I think it has the option to store it encrypted there but could be wrong.

Re: Wuala: Secure Cloud Storage

#106
post #41

Earlier quoted context omitted.

We were looking at using AeroFS with our own servers, but it doesn't appear to support encryption on the server. I may be wrong about this?

AeroFS only stores data on clients (unless you run your own team server) and I think it has the option to store it encrypted there but could be wrong.

Exactly, running your own team server and backing up your own data. I'll have to contact them regarding the encryption options: if the team server can have the data encrypted it would be a winner for us.

Re: Wuala: Secure Cloud Storage

#107

It's from Lacie, so no thank you. I bought a Lacie drive and proceeded to copy all my stuff onto it. Before I could get comfortable with it (so within the first six months of purchase) and before I backed up my stuff, the drive failed. I contacted Lacie about it and they proceeded to try and sell me a service whereby they'd recover my data for €300. That would've brought my total spend on the drive up to around £400.…

One must always have at least two copies of any data one cares about and at least one off-site copy.

Re: Wuala: Secure Cloud Storage

#108
post #72

So honest question, but how is having your data stored in Switzerland (where Wuala is based) any different than having it in the US? Or is it just the promise of local encryption that makes it safer? Some purported info about data protection for Switzerland: http://www.dataprotection.ch/en/disclosing-personal-data.asp > Restrictions on disclosure The DPA does not permit the disclosure of sensitive data or personality…

Due to the manner in which data is client-side encrypted (password-based keys, password not stored on their servers), they can hand your (encrypted) data to any government with no ability to decrypt it. Now, depending on the outcome of some cases before US Courts right now, you might be compelled to provide the password to unencrypt the data. It's also worth noting that the password-based asymmetric encryption schemes are less secure than the arbitrary key based ones, but still it's better than nothing. In my case, I'm sold by the fact that they provide more free storage than Dropbox and have a much better Linux client (based on a FUSE plugin, a much nicer architecture in general).

Re: Wuala: Secure Cloud Storage

#109
Seriously? Wuala is a service run by LaCie. LaCie is owned by Seagate, an American corporation. It doesn't matter where the servers are, because all the important decisions will be made in Cupertino, California.

http://www.lacie.com/us/company/news/news.htm?id=10722

Now, client-side encryption is a much more interesting aspect of their service, but is it worth the trouble if Wuala's clunky client takes 100 times longer than Dropbox to sync a file between two devices? Ditto for SpiderOak, JungleDisk, and every other backup/sync solution that I've used so far that boasts client-side encryption. And it wasn't due to Dropbox's deduplication, either. Some of them just talked lazily with the server for several minutes before they even started to upload/download any files.

Re: Wuala: Secure Cloud Storage

#110
post #2

Sounds cool! I've been looking for a trustable Dropbox alternative so I don't have to manually encrypt the contents all the time. I'll download and try it out real q- > Make sure Java [...] is installed. :C

I've been using it for almost a year now on my Windows, Linux and Android. Didn't have any issues so far. I would recommend the service to everyone concerned with privacy. The only thing that one can be suspicious is whether they are transferring your key or not. But, at least they claim your data is safe and encrypted, while Dropbox, GDrive and similar services don't even pretend that they encrypt your data. However…

>> don't even pretend that they encrypt your data.

would it make you happier if they kept their services the same, but just pretended to introduce encryption? ;-)

Post reply on HN