Define the database parameters that the Dynamic Data Masking service uses to connect to the target database. The target database configuration specifies the database, user account, and connection settings.
Dynamic Data Masking uses the target database to retrieve metadata. For security rules that include column masking for
SELECT *
statements, Dynamic Data Masking first retrieves the list of columns. If the target database connection is not valid or if the DDM admin user credentials are not active, Dynamic Data Masking cannot retrieve the list of columns to apply the security rule. In such cases, Dynamic Data Masking generates and sends the following error to the client:
Required credentials are either invalid or missing. Contact your database administrator for assistance.
The error ensures that unmasked data does not appear on the database client.
In the Management Console, click
Tree
Add Database
.
The
Add Database
window appears.
Select the database type.
In the
DDM Database Name
field, enter a name for the database connection you are creating.
From the
Key Store
menu, select either the
Default
or
Custom
keystore option and enter the database credentials or keystore name and alias.
The settings differ based on the type of keystore that you select.