Skip to content

Latest commit

 

History

History
18 lines (13 loc) · 826 Bytes

tde-protector-encrypted.md

File metadata and controls

18 lines (13 loc) · 826 Bytes

CloudSploit

AZURE / SQL Server / TDE Protector Encrypted

Quick Info

Plugin Title TDE Protector Encrypted
Cloud AZURE
Category SQL Server
Description Ensures SQL Server TDE protector is encrypted with BYOK (Bring Your Own Key)
More Info Enabling BYOK in the TDE protector allows for greater control and transparency, as well as increasing security by having full control of the encryption keys.
AZURE Link https://docs.microsoft.com/en-us/azure/sql-database/transparent-data-encryption-byok-azure-sql
Recommended Action Ensure that a BYOK key is set for the Transparent Data Encryption of each SQL Server.

Detailed Remediation Steps