Help Center/ Edge Security/ Service Overview/ Security/ Data Protection Controls
Updated on 2024-05-27 GMT+08:00

Data Protection Controls

EdgeSec uses multiple data protection methods and features to ensure data security and reliability.

Table 1 Data protection controls and features

Measure

Description

Protection for data at rest

EdgeSec encrypts sensitive data to ensure the security of sensitive data in user traffic.

Protection for data in transit

Data is encrypted when it is transmitted between microservices to prevent leakage or tampering during transmission. EdgeSec keeps your configuration data secure as the configuration data is transmitted over HTTPS.

Data integrity verification

When the EdgeSec process is started, the configuration data is obtained from the configuration center instead of directly reading local files.

Data isolation mechanism

EdgeSec isolates its tenant zone from its management plane. Operation permissions for EdgeSec are isolated by user. Your policies and logs are isolated from those of others.

Data destruction mechanism

To prevent information leakage caused by residual data, Huawei Cloud sets different retention periods based on the customer level. If the customer does not renew the subscription or recharge the account after the retention period expires, the data stored in the cloud service will be deleted and the cloud service resources will be released. EdgeSec automatically detects cloud service subscription status and releases resources when the retention period expires.

EdgeSec fully respects user privacy, complies with laws and regulations, and does not collect or store any user privacy data. For more privacy data usage and protection issues, see Privacy Statement.