Using table encryption
In DB2, we may use encryption in two areas: network communication and table data encryption. Regarding network communication, also named data in transit, we can enforce the encryption of just the authorization identifiers, such as the username and password, by setting database manager parameter AUTHENTICATION
or SRVCON_AUTH
to SERVER_ENCRYPT
, SERVER_ENCRYPT
, GSS_SERVER_ENCRYPT
, KRB_SERVER_ENCRYPT
or to encrypt authentication and data sent over the network between clients and servers by setting to DATA_ENCRYPT
or DATA_ENCRYPT_CMP
values. Here, we can also enumerate SSL as encryption method for data in transit. Table data encryption is used, in general, to hide sensitive data from users who have access to those tables and it also offers protection against physical theft.
Getting ready
In this recipe, we will encrypt the CNAM
column of the NAV.COMM
table to demonstrate how to use data encryption.
How to do it...
The function used to encrypt columns is encrypt
. For decryption...