Search

Home > voiceofthedba's podcast > Bad Database Encryption
Podcast: voiceofthedba's podcast
Episode:

Bad Database Encryption

Category: Technology
Duration: 00:04:09
Publish Date: 2019-03-12 16:00:00
Description:

I ran across a blog about encrypted databases linked from Bruce Schneier's blog. I follow his musings and writings on security ,and he recommended we read it with this sentence: "Even the summary is too much to summarize, so read it." Good enough for me, so I clicked the link and read about encrypted databases.

I like the idea of stronger encryption in databases, and I've given a few talks on the subject. At times there are attendees that will debate that encryption in the database doesn't do a lot of good. Often they dismiss the idea of TDE, since administrators can still read the data and break the encryption, and normal users aren't affected. Many also note that database encryption does nothing for data on the wire, which is true. Most people want to do the encryption and decryption on the client, which has other challenges and is fairly hard to do well.

Read the rest of Bad Database Encryption

Total Play: 0