Scenario 2: Decryption Process and Typical Decryption Configuration
Decryption Process
Figure 1 shows the decryption process of database encryption and access control.
- (Optional) Perform an emulation decryption test.
Perform the simulation decryption test to check whether the target supports decryption. For details, see Simulated Decryption Test.
- Create a decryption task.
Create a decryption task. For details, see Configuring a Decryption Task.
Typical Configuration of the Decryption Function
After database assets are encrypted, they do not need to be encrypted if services are changed. In this case, you need to restore the database table by using the decryption function and the table structure rollback function. This example shows how to decrypt database tables.
Prerequisite
Database tables have been encrypted. For details, see Scenario 1: Encryption Process and Typical Encryption Configuration.
Step 1: Performing a Simulated Decryption Test
Before decrypting a database table, perform a simulation decryption test to check whether the database meets the decryption requirements.
- Log in to the web console of the instance as user sysadmin.
- In the navigation tree, choose Service Test > Simulation Test.
- Click Add Decryption Test.
- In the Add Decryption Test dialog box, configure the test target.
Figure 2 The decryption test is added.
- Click Save.
After the test is complete, you can view the test result in the list and click Details to view the completion status of each node in the decryption process.
If a fault occurs during the simulation test, rectify the fault as prompted.
- After the test is complete, click Delete to delete the simulated decryption test.
If a decryption task needs to be configured after the test, delete the simulated decryption test first.
Step 2: Creating a Decryption Task
- Log in to the web console of the instance as user sysadmin.
- In the navigation tree on the left, choose Data Encryption > Decryption Task Management.
- Click Add Decryption Task in the upper right corner.
- In the Add Decryption Task dialog box, set and encrypt the corresponding data information, including the asset name, schema name, and table name.
Figure 3 Adding a decryption task
- Select Start Task. After the creation is complete, the decryption task is automatically started.
- Click Complete.
Step 3: Verifying the Configuration
After decryption, use the original database address or proxy address to query the database table content. If the following information is displayed, the database table has been restored:

Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot