4.1.10 Data Encryption
Oracle Advanced Security TDE provides the ability to encrypt sensitive application data on storage media completely transparent to the application itself. Transparent Data Encryption (TDE) stops would-be attackers from bypassing the database and reading sensitive information from storage by enforcing data-at-rest encryption in the database layer. Applications and users authenticated to the database continue to have access to application data transparently (no application code or configuration changes are required), while attacks from OS users attempting to read sensitive data from tablespace files and attacks from thieves attempting to read information from acquired disks or backups are denied access to the clear text data. TDE addresses encryption requirements associated with public and private privacy and security mandates such as PCI and CaliforniaSB1386.
Parent topic: Oracle Database Security