arcotDB sensitive data encryption type

book

Article ID: 16283

calendar_today

Updated On:

Products

CA Rapid App Security CA Advanced Authentication CA API Gateway

Issue/Introduction

 

 



What sensitive data is encrypted by advanced authentication in the database and need details about the type of encryption used to encrypt this data.

Environment

Release: ARCWFT05900-8-Arcot-WebFort-for Windows
Component:

Resolution

We use 3DES in CBC mode with 192 key size to encrypt the sensitive data. 

When we create the organization it asks what user data we want to encrypt like username, PAM, email address etc. 
Passwords are encrypted. 

But you can still encrypt your whole database. Make sure that it returns a decrypted value when the webfort/riskfort tries to fetch something.