Encryption Algorithm
The encryption algorithm depends on the data domain. It is recommended to complete the configuration of the required data domain before setting up the encryption algorithm.
Adding Algorithm
- Logging In to the Database Encryption System using the system administrator sysadmin account.
- In the left navigation bar, select Rule Management-Encryption Algorithm.
- Select the desired data field and click the Add button.
- In the pop-up window, fill in the new encryption algorithm parameter information. The description of the new encryption algorithm parameters is shown in Table 1. Click Confirm to save. Figure 1 Adding encryption algorithm
Table 1 Table1 Description of new encryption algorithm parameters Parameter
Description
Algorithm Name
Required. Enter the unique identifier name of the encryption algorithm.
Encryption Rules
Required. Select or enter the encryption algorithm type. The system provides preset common algorithms such as SM4 and AES. For additional algorithms, contact the administrator for configuration. SM4 is a national standard symmetric encryption algorithm suitable for structured data encryption scenarios.
Keys
Required. Select or enter the key identifier. Apply the appropriate key version based on your actual business needs; do not mix different keys. In production environments, rotate keys regularly.
Default or Not
Optional. When checked, this algorithm becomes the default algorithm for data encryption (used automatically if no algorithm is specified). Only one default algorithm can be set per encryption rule type.
Viewing/Editing/Deleting Algorithm
- View: Select the target encryption algorithm category, then select the target algorithm to view the encryption algorithm details. Figure 2 Viewing the encryption algorithm
- Edit: Select the target encryption algorithm category, select the target algorithm, and click Edit to edit the encryption algorithm. Figure 3 Editing the encryption algorithm
- Delete: Select the target encryption algorithm category, select the target algorithm, and click to delete the encryption algorithm. Figure 4 Deleting the encryption algorithm
----End
- Encryption algorithms are critical technical means for ensuring data security, safeguarding the confidentiality and integrity of data during transmission and storage. Improper editing or deletion operations may lead to severe security risks and data loss.
- Assess the impact: Before modifying the encryption algorithm, thoroughly evaluate its effects on existing encrypted data and business processes.
- Compatibility: Ensure the modified algorithm is compatible with other parts of the system, including existing hardware and software.
- Security: Assess whether the new algorithm provides sufficient security to prevent potential vulnerabilities.
- Backup: Before editing, back up the current algorithm configuration and related data for restoration if needed.
- Dependency Check: Before removing the encryption algorithm, verify whether any business processes or data in the system depend on it.
- Data risk: Recognizing that deleting the algorithm may prevent decryption of existing encrypted data, resulting in permanent data loss.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot