Which tables and columns in the Symantec DLP Database are Encrypted?
search cancel

Which tables and columns in the Symantec DLP Database are Encrypted?

book

Article ID: 159530

calendar_today

Updated On:

Products

Data Loss Prevention Enforce

Issue/Introduction

How DLP incident data is stored, at rest, in the Oracle DB or in external incident storage.

Resolution

Look for the following table.columns to be encrypted:

Table Column
MessageLob networkOriginalMessage
MessageComponentLob uncrackedcomponent 
MessageComponentLob crackedcomponent

 

The columns described are BLOBs. All tables listed belong to the DLP Schema Owner. The default user is protect.

In terms of incident components, the encrypted parts of an incident are:

  • List of matches
  • Original message (if present)
  • File attachment (if present)

Encryption is performed by the DLP application, which is to say, outside of the Oracle database.  Oracle encryption functionality is not used.

For external storage of incidents, all incident data is stored encrypted on disk and not within the Oracle database..

 

 

Additional Information