Subject Re: [Firebird-Architect] database encryption
Author Dimitry Sibiryakov
03.11.2010 20:43, Sijun Kang wrote:
> *Nobody can gain access to my data (without bruteforce
> decryption) in case I lost my laptop in power-off status*.
> This, I think, is achievable.
>
> I do agree with Jim that the "key" here is the "key management". Let's dig a
> little bit more in depth as to how we can achieve above goal along the
> personal information management scenario -
>
> *As long as Firebird only keeps the key in memory when the user is
> logged in, and delete the key (and other cached information related with the
> corresponding encrypted database) from the memory once the user is logged
> out (or timed out after idling for a certain period of time), it seems to me
> that the encrypted database is safe. *

EFS is your thing.

--
SY, SD.