Table of Contents

Search

  1. Preface
  2. Introduction to the Data Archive Accelerator
  3. Data Archive Accelerator Setup
  4. Data Archive Accelerator Rules
  5. Dynamic Data Masking

Data Archive Accelerator Guide

Data Archive Accelerator Guide

Step 5. Create the Security Rules

Step 5. Create the Security Rules

To return masked data to the user, create security rules that define which users see masked data and how the data is masked.
The Data Archive accelerator contains pre-defined masking rules for the Data Archive Loyalty demo database. Use the accelerator rules as a guide to create rules based on the type of data that you want to mask.
You must create a security rule set and add security rules to the rule set. The first rule that you add to the rule set must be a rule like the DataArchiveAction rule that decrypts the user and user roles from the SQL comment that Data Archive appends to the request. The Data Archive accelerator contains an example GenericDataArchiveAction rule that decrypts the SQL comment. Create additional security rules based on the data that you want to mask.
The access roles that you specify in the security rules must match the access roles that you create in Data Archive. You can mask data based on the user name or the Data Archive access role of a user. It is recommended to mask data based on the Data Archive access role.

0 COMMENTS

We’d like to hear from you!