Re: Enquiry about TDE with PgSQL - Mailing list pgsql-general

From Bruce Momjian
Subject Re: Enquiry about TDE with PgSQL
Date
Msg-id aQTolXT9EzCa3tiA@momjian.us
Whole thread Raw
In response to Re: Enquiry about TDE with PgSQL  (Laurenz Albe <laurenz.albe@cybertec.at>)
List pgsql-general
On Fri, Oct 31, 2025 at 05:40:31PM +0100, Laurenz Albe wrote:
> On Fri, 2025-10-31 at 08:21 -0700, Adrian Klaver wrote:
> > Yeah, what I would like to know is how many of the data breaches 
> > actually grab directly from the storage versus getting it through the 
> > database or other software above the storage? It seems to me social 
> > engineering plays a bigger role in this.
> 
> This is not about actual security considerations, it is about checkboxes.
> Consequently, rational arguments are missing the point.

I think the big question is that, now with the effective PCI spec
disallowing only storage-level encryption, can we, as a project,
continue to reject in-core TDE because it is a check-box item.

-- 
  Bruce Momjian  <bruce@momjian.us>        https://momjian.us
  EDB                                      https://enterprisedb.com

  Do not let urgent matters crowd out time for investment in the future.



pgsql-general by date:

Previous
From: Laurenz Albe
Date:
Subject: Re: Enquiry about TDE with PgSQL
Next
From: Adrian Klaver
Date:
Subject: Re: Enquiry about TDE with PgSQL