Creating a Key
The key serves as the core security credential for encrypting and decrypting database fields. By generating dedicated, high-security encryption keys, organizations can provide highly robust protection for business-sensitive data. Additionally, the use of independent encryption keys enables data encryption isolation—preventing the cross-usage of encryption keys across different business datasets—and effectively prevents the leakage of sensitive data in plaintext. This ensures the storage security of both existing historical data and newly added business data, serving as the fundamental security foundation for subsequent field encryption, data read/write decryption, and the seamless, compliant operation of business systems.
Procedure
- Logging In to the Database Encryption System using the system administrator (sysadmin) account.
- Select Rule Management > Encryption Rule from the left-side navigation tree; the system then creates default encryption rules for the built-in algorithms, as shown in Figure 1.
- If you are using the system's built-in encryption rules, you can skip this step.
If you need to create your own encryption rule, click Add Encryption Rule, then fill in the information on the Add Encryption Rule page to create an encryption category. The Add Encryption Rule page is shown in Figure 2; the parameter descriptions for adding an encryption rule are provided in Table 1.
Table 1 New encryption rule parameter documentation Parameter
Description
Encryption Rule Name
You can enter a custom rule name as needed.
Recommended naming convention:
- Named after the algorithm. For example: SM4
- The name combines an algorithm with an encryption mode; e.g., SM4_GCM.
Encryption Algorithm and Mode
Select the supported encryption method from the dropdown menu.
In compliance with China's national cryptographic standards and security requirements, the system defaults to providing the SM4_GCM algorithm as well as the SM4 algorithm operating in GCM mode.
- Click
on the right side of the already created encrypted category to open the Add Key page, as shown in Figure 3. - On the pop-up page, enter the key name and then click Confirm. The parameters for adding a new key are shown in Table 2.
- After saving, view the results; the final display is shown in Figure 4.
What is your overall rating for this page?
Thank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot



