Skip to Main Content
DB Security - TDE key management with Oracle Key Vault

About This Workshop

Youtube Video

About This Workshop
In this lab you will learn how to migrate an encrypted Oracle database 19c from a local TDE wallet to centralized key management with Oracle Key Vault. You will learn that only Oracle Key Vault helps you to achieve PCI compliance by deleting pre-migration encryption keys from the encrypting server after first uploading them to OKV. Another unique capability (using tagged encryption keys for easier association of TDE master keys with PDBs) is also part of this lab.

Workshop Info

1 hour
  • Encrypt an Oracle Database 19c with TDE
  • Use OKV RESTful services to prepare OKV to provide key management for the encrypted database.
  • Upload the pre-migration TDE keys to OKV (important for PCI compliance)
  • Migrate the encrypted database from local TDE wallet to OKV
  • Perform post-migration steps to implement best practices
  • Familiarity with database is preferred
  • An understanding of Transparent Data Encryption (TDE), preferably having completed the DB Security - ASO lab
  • Some understanding of cloud and database terms
  • Familiarity with Oracle Cloud Infrastructure (OCI) 

Other Workshops you might like