When you configure a target database, the database credentials that you enter are stored in a secure keystore, not in the Dynamic Data Masking Management Console tree. A security provider allows access to the keystore.
The keystore and security provider protect database credentials and prevent unauthorized access to the target database. When you configure a database, you can choose to use either the default keystore or a custom keystore and security provider. If you choose the default keystore, Dynamic Data Masking also uses the default security provider. Both the default keystore and default security provider are pre-configured for use in Dynamic Data Masking. If you choose a custom keystore and security provider, you must configure Dynamic Data Masking for use with the custom keystore and security provider.