Table of Contents

Search

  1. Preface
  2. Introducing Administrator
  3. Organizations
  4. Metering
  5. General and security settings
  6. Permissions
  7. Schedules
  8. Bundle management
  9. Event monitoring
  10. Troubleshooting security
  11. Licenses

Organization Administration

Organization Administration

Connection properties storage

Connection properties storage

You can configure where to store the connection properties for your organization
and sub-organizations
. To specify where to store the connection properties, configure the
Connection Credentials
on the
Organization
page.
You can store connection properties in either of the following locations:
Informatica Cloud
When you store connection properties on the cloud, the connection properties are stored in the
Informatica Intelligent Cloud Services
repository and are always available. The connections are encrypted by the
Informatica Intelligent Cloud Services
key management service.
Informatica Intelligent Cloud Services
backs up connection properties regularly as part of standard backup procedures.
Local Secure Agent
You might store connection properties with a local Secure Agent if you need the connection properties to reside within your firewall. When you enable this option, the properties for all connections that are listed on the
Connections
page are stored with the local agent.
In organizations subject to FedRAMP, you can't store connection properties with a local Secure Agent.
If you choose this option, you can store connection properties with one Secure Agent. Connection properties are stored in the following directory:
<Secure Agent installation directory>/apps/Data_Integration_Server/data
When you store properties with a local Secure Agent, the Secure Agent must be running so that tasks can run and users can work with connections. Back up connection properties regularly to prevent loss of data. A best practice is to back up connection properties after you change the location or the encryption key for connection properties.
The connections are encrypted by the
Informatica Intelligent Cloud Services
key management service.
Informatica Intelligent Cloud Services
uses CBC (Cipher Block Chaining) mode 256 AES encryption to store the connections.
If you use an external secrets manager like AWS Secrets Manager or Azure Key Vault to store sensitive connection credentials, you need to set the connection credential storage to
Informatica Cloud
. When you do this, sensitive credentials are retrieved from the secrets manager and other connection properties are stored in the
Informatica Intelligent Cloud Services
repository. You can't use a secrets manager if you store connection credentials on a local Secure Agent. For more information about secrets manager configuration, see Secrets manager configuration.
You can change where you want to store connection properties. When you do this,
Informatica Intelligent Cloud Services
moves the connection properties to the appropriate location.
For example, your license expires, so you configure the organization to store connections on the cloud.
Informatica Intelligent Cloud Services
moves the connection properties from the local Secure Agent to
Informatica Intelligent Cloud Services
.

0 COMMENTS

We’d like to hear from you!