11.07.2015 Views

Oracle Database 11 g - Online Public Access Catalog

Oracle Database 11 g - Online Public Access Catalog

Oracle Database 11 g - Online Public Access Catalog

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CHAPTER 5 ■ DATABASE SECURITY 245Transparent Data Encryption with Enterprise Manager<strong>Database</strong> ConsoleYou can create encryption keys and control security using the <strong>Oracle</strong> Enterprise Manager<strong>Database</strong> Console. One of the enhancements made in <strong>Oracle</strong> <strong>Database</strong> <strong>11</strong>g is the integration ofthe wallet creation with Enterprise Manager <strong>Database</strong> Console. To enable TDE, the navigationpath is Server ➤ Security (Transparent Data Encryption).The new TDE setup screen looks like the screen displayed in Figure 5-2.Figure 5-2. TDE setupAll you have to do is determine what you want your password to be. Once you createthe wallet, you can proceed to other security-related options such as creating an encryptedtablespace. If you click the Advanced Option button, you will have the option to rekey themaster key. You might want to do this is if you think your master key has been compromised.You can revisit the screen in Figure 5-2 after each database bounce to open the wallet. Byproviding the master key password for the database, you are able to open the wallet.Tablespace Encryption with <strong>Database</strong> ConsoleEarlier in this chapter, we demonstrated how to set up tablespace encryption using the conventionalSQL syntax. All of the tablespace encryption features are also configurable using <strong>Database</strong>Console. You can navigate to the tablespace setup screen within <strong>Database</strong> Console by selectingServer ➤ Storage (Tablespaces) ➤ Create.You will see the new encryption options provided, as shown in Figure 5-3.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!