Encryption Rule
The encryption rules manage all encryption algorithms and classifications, as well as key testing.
Adding Encryption Type
- Logging In to the Database Encryption System using the system administrator sysadmin account.
- In the left navigation bar, select Rule Management > Encryption Rule then click Add Encryption. Figure 1 Encryption rules
- Enter the information in the pop-up window and click confirm. Figure 2 Creating encryption rule configuration
Adding Encryption Algorithm
- Select the required encryption category and click Add. Figure 3 Adding encryption algorithm
- In the dialog box, enter the key information. The new key parameters are described as shown in Table 1. Click Confirm to save the settings. Figure 4 Adding key
Viewing or Editing
- View/Edit encryption rules: Select the encryption rule, click
to view the encryption rule name; click Edit to edit the encryption rule. Figure 5 Viewing encryption rules information
- View/Edit Encryption Key: Select the target encryption rule and the target key to view the encryption key details. Click Edit to modify the encryption key. Figure 6 Viewing key information
Editing and Deleting
Click
to delete the encryption rule or key.
- Cautionary Update: Key updates are significant operations and should be performed with care. Updating a key may render existing encrypted data unreadable unless an appropriate migration strategy and backup are in place.
- Plan Update: If you need to update the key, plan ahead and notify all relevant parties. Ensure the update process does not affect business continuity and have a rollback plan.
- Secure Transition: Establish a secure transition period between the old and new keys to prevent interruptions in data access.
- Do not delete randomly: deleting a key may result in irreversible loss of encrypted data. Do not delete keys unless there is a clear business requirement and a data migration plan.
- Backup key: Before deleting the key, ensure that all encrypted data is backed up and can be decrypted using the new key or another key.
- Recording and auditing: Record key deletion operations and implement appropriate audit trails to meet compliance requirements.
Backing Up and Recovering
- Backup: Clicking the Backup button will allow you to save the key classification and algorithm information to your local machine using the backup function. Figure 8 Backing up
- Recovery: Click the Recovery button to use the restore function to upload the key classification and algorithm information to the server; after selecting the file, click Confirm to upload.
The uploaded file will undergo various checks and must be in Excel (xls) format with a size not exceeding 10 MB. After uploading, the system will decrypt and verify the file content. If the verification passes, it will overwrite the current encryption rule list information.
Figure 9 Uploading the encryption rule configuration file
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot