Light stream data encryption

SQL Server 2008 supports data protection at rest via TDE (transparent data encryption), but encryption excludes files stored on the hard disk through the FILESTREAM function.

How did you handle encryption of this data in a file system stored through FILESTREAM? An encrypted file system is apparently an option, but will cause a problem during database backup, since the db and file system encryption are performed by two different sources using (possibly) different encryption keys! Please share your thoughts.

Many thanks!

+4
source share
3 answers

Do you have folders in which your FILESTREAM data is in EFS, encrypted by the account your SQL Server is running on?

+3
source

Native TDE does not support them, but NetLib Encryptionizer does this if you want to consider a third-party solution: http://netlib.com/tde-sql-encryptionizer.asp

0
source

You can also consider the third-party DbDefence tool for encrypting streams. It is free for small databases (up to 2000 MB), but the size of the stream data does not matter!

0
source

Source: https://habr.com/ru/post/1301979/


All Articles