The Data Archive accelerator contains a pre-defined security rule set to mask data in the Data Archive Loyalty database. The masking rules in the rule set are an example of the type of rules that you can create to mask Data Vault data. The Print Roles rules allow you to view the users and roles that receive masked data.
The rules in the DataArchiveAccelerator rule set are sample rules that you use with the Data Archive Loyalty demo database. Use the rules as a guide to create masking rules to mask Data Vault data.
The following figure shows the Data Archive accelerator rule tree:
Select a rule in the rule tree to view the properties in the pane on the left.
The following image shows the MaskLevel0 rule properties:
The MaskLevel0 rule uses the any rule matcher, which applies the rule to all requests that reach the MaskLevel0 rule in the rule tree. The mask rule action masks data. In the mask rule action, the NULL masking function on the GENDER column in the CUSTOMER table nullifies gender data in the result set. The continue processing action directs the request to the next rule in the rule tree.