Skip to main content
Ctrl+K
SecureDrop latest documentation - Home SecureDrop latest documentation - Home
  • Welcome to SecureDrop’s documentation!

Introduction

  • What makes SecureDrop unique?
  • SecureDrop Workstation and Qubes OS
  • Getting support
  • History and credits

Source Guide

  • SecureDrop for Sources
  • Before you submit
  • How to submit
  • After you submit

Journalist Guide

  • SecureDrop for Journalists
  • Starting Qubes
  • Starting SecureDrop Inbox
  • Communicating with sources
  • Working with submissions
  • Ending your session

Admin Guide

  • SecureDrop for Administrators

Admin Guide: Installation

  • Installation overview
  • Hardware
  • Prepare installation media
  • Prepare email accounts for alerts
  • Prepare a SecureDrop Workstation
  • Generate the Submission Key
  • Using the KeePassXC password manager
  • Set up the network firewall
  • Setting up a pfSense network firewall
  • Setting up an OPNSense network firewall
  • Prepare the servers
  • Install SecureDrop on the servers
  • Apply configuration to Admin Workstation
  • Create an Administrator account on the Admin Interface
  • Test the installation
  • Provisioning USB Export Devices
  • Troubleshooting Qubes issues during installation
  • Troubleshooting OSSEC

Admin Guide: Migration

  • Migration overview
  • Migrating from a Tails-based SecureDrop
  • Migrating a Journalist Workstation
  • Removing the passphrase from a GPG key

Admin Guide: Deployment

  • Onboard Journalists
  • Deployment overview
  • Landing Page
  • Getting an onion name for your SecureDrop
  • Whole site changes
  • Sample SecureDrop privacy policy
  • Promoting your SecureDrop instance
  • Using a YubiKey with the Admin Interface
  • Tor proof-of-work defense on the Source Interface
  • HTTPS on the Source Interface
  • SSH over local network
  • Configuring OSSEC fingerprint verification

Admin Guide: Reference

  • The Admin Interface
  • Analyzing OSSEC alerts
  • Logging in via SSH
  • Off-board Administrators and Journalists
  • The securedrop-admin Utility

Admin Guide: Maintenance

  • Updating SecureDrop server
  • Updating SecureDrop Workstation
  • Investigating logs
  • Troubleshooting connection problems
  • Backing up and restoring servers
  • Rebuilding an Admin Workstation
  • BIOS updates on the servers
  • Decommission SecureDrop
  • Backup and restore
  • BIOS update instructions
  • Reviewing and exporting logs
  • Managing clipboard access

Appendices

  • Glossary
  • Frequently Asked Questions
  • Passphrases
  • Hardware Recommendations
  • Threat model
  • Data flow diagram
  • Attacks and countermeasures on the SecureDrop environment

Downloads

  • PDF
  • Show source
  • Suggest edit

Migration overview

Migration overview#

previous

Troubleshooting OSSEC

next

Migrating from a Tails-based SecureDrop

By SecureDrop Team and Contributors

© Copyright 2015-2026, Freedom of the Press Foundation.