Amazon Redshift Guia do Utilizador Página 105

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 255
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 104
(SOX), the Health Insurance Portability and Accountability Act (HIPAA), and other such regulations provide
guidelines for handling specific types of data.
Encryption is an immutable property of the cluster.The only way to go from an encrypted to a nonencrypted
cluster or vice versa is to unload the data and reload it to a new cluster. Encryption also applies to backups.
When restoring from an encrypted snapshot, the new cluster will be encrypted as well.
Note
When you enable encryption in your cluster, it will have an impact on performance, even though
it is hardware-accelerated. On average, we expect you will see approximately a 20 percent
degradation, with peak overheads of 40 percent.You should take this into account when deciding
whether you should enable encryption when you create the cluster.
Hardware Security Modules
You can use a hardware security module (HSM) to generate and manage your Amazon Redshift cluster
key. HSMs are devices that provide direct control of key generation and management.They provide
greater security by separating key management from the application and database layers. Amazon
Redshift supports both AWS CloudHSM and on-premises HSMs for key management.
When you configure your cluster to use an HSM, Amazon Redshift sends a request to the HSM to create
a cluster key.The HSM uses the cluster key to encrypt the database key. The cluster key is stored in the
HSM. The cluster key decrypts the encrypted database key, and then the unencrypted database key is
passed over a secure channel to the cluster, where it is loaded into memory. The database key is then
used to encrypt all of the data encryption keys that encrypt data blocks.
When you opt to use an HSM for management of your cluster key, you need to configure a trusted network
link between Amazon Redshift and your HSM. Doing this requires configuration of client and server
certificates.
Amazon Redshift creates a public client certificate from a randomly generated private and public key pair.
These are encrypted and stored internally.You download and register the public client certificate in your
HSM, and assign it to the applicable HSM partition.
You provide Amazon Redshift with the HSM IP address, HSM partition name, HSM partition password,
and a public HSM server certificate, which is encrypted by using an internal master key. Amazon Redshift
completes the configuration process and verifies that it can connect to the HSM. If it cannot, the cluster
is put into INCOMPATIBLE_HSM state and the cluster is not created. In this case, you must delete the
incomplete cluster and try again.
After initial configuration, if Amazon Redshift fails to connect to the HSM, an event is logged. For more
information about these events, see Amazon Redshift Event Notifications (p. 202)
Configuring HSM Using the Amazon Redshift
Console
Topics
Creating an HSM Connection (p. 100)
Creating an HSM Client Certificate (p. 101)
Displaying the Public Key for an HSM Client Certificate (p. 104)
Deleting an HSM Connection (p. 104)
Deleting an HSM Client Certificate (p. 104)
API Version 2012-12-01
99
Amazon Redshift Management Guide
Hardware Security Modules
Vista de página 104
1 2 ... 100 101 102 103 104 105 106 107 108 109 110 ... 254 255

Comentários a estes Manuais

Sem comentários

Sanyo DS19310 manuals

Owner’s manuals and user’s guides for Televisions Sanyo DS19310.
We providing pdf manuals Sanyo DS19310 for download free by document types:






More products and manuals for Televisions Sanyo

Models Document Type
CE42SRE1 User Manual       Sanyo CE42SRE1 User Manual, 64 pages
LCD-26XR9DA User Manual   Sanyo LCD-26XR9DA User Manual, 38 pages
CE42LH2WP User Manual   Sanyo CE42LH2WP User Manual, 33 pages
DP19649 User Manual    Sanyo DP19649 User Manual, 60 pages
CE52SR1 User Manual   Sanyo CE52SR1 User Manual, 1 pages
DP32640 User Manual   Sanyo DP32640 User Manual, 16 pages
HIGH-DEFINITION DIGITAL PLASMA TELEVISION DP50747 User Manual   Sanyo HIGH-DEFINITION DIGITAL PLASMA TELEVISION DP50747 User Manual, 52 pages
AVM2445 User Manual   Sanyo AVM2445 User Manual, 18 pages
42WPX1 User Manual   Sanyo 42WPX1 User Manual, 2 pages
52LH1WP User Manual   Sanyo 52LH1WP User Manual, 1 pages
AVM-1309S User Manual     Sanyo AVM-1309S User Manual, 44 pages
1080p HDTV LCD DP50842 User Manual   Sanyo 1080p HDTV LCD DP50842 User Manual, 2 pages
CE32DFN2-B User Manual   Sanyo CE32DFN2-B User Manual, 20 pages
LCD-37XR9SDA User Manual   Sanyo LCD-37XR9SDA User Manual, 41 pages
AVL-263 User Manual   Sanyo AVL-263 User Manual, 44 pages
LCD-37XR9DA User Manual   Sanyo LCD-37XR9DA User Manual, 41 pages
PLC-XU73 User Manual   Sanyo PLC-XU73 User Manual, 64 pages
CLT1554 User Manual     Sanyo CLT1554 User Manual, 60 pages
DS35510 User Manual     Sanyo DS35510 User Manual, 68 pages
CE32WN3-B User Manual   Sanyo CE32WN3-B User Manual, 20 pages