Re: Encryption / Decryption via PGCrypto

From: Stéphane KANSCHINE <stephane(at)hexack(dot)fr>
To: Anjul Tyagi <anjul(at)ibosstech-us(dot)com>, pgsql-admin(at)postgresql(dot)org
Subject: Re: Encryption / Decryption via PGCrypto
Date: 2018-10-24 09:00:24
Message-ID: 20181024090024.jyw2f4l2uygydh3y@office.hexack.fr
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-admin


Hi,

Le mer. 24 oct., vers 08:27, Anjul Tyagi exprimait :
>
> We are implementing the pgcrypto in our database to encrypt and decrypt the
> Column data. for testing purpose we have generate the PGP public / private
> key and use those when we read and write data.
>
> How can we secure the key, if we keep the key outside how can we use that
> into query.

We keep the private key on the app server. It communicates with postgres
through SSL and postgres logs aren't too verbose in order to avoid key
exposition.

If there's a better way, i'm curious of it.

Regards,
--
Stéphane KANSCHINE - https://www.hexack.fr./ - https://www.nuajik.io./
@ stephane(at)hexack(dot)fr
 +33 6 64 31 72 52

In response to

Responses

Browse pgsql-admin by date

  From Date Subject
Next Message ZongtianHou 2018-10-24 09:35:42 Can I add a column in catalog table as a superuser
Previous Message Anjul Tyagi 2018-10-24 08:27:30 Encryption / Decryption via PGCrypto