Re: Enquiry about TDE with PgSQL

From: Christophe Pettus <xof(at)thebuild(dot)com>
To: Bruce Momjian <bruce(at)momjian(dot)us>
Cc: pgsql-general <pgsql-general(at)postgresql(dot)org>, Kai Wagner <kai(dot)wagner(at)percona(dot)com>, Laurenz Albe <laurenz(dot)albe(at)cybertec(dot)at>, Ron Johnson <ronljohnsonjr(at)gmail(dot)com>
Subject: Re: Enquiry about TDE with PgSQL
Date: 2025-11-01 01:32:17
Message-ID: 86A619E7-04B7-45EB-850A-54CBD388733C@thebuild.com
Views: Whole Thread | Raw Message | Download mbox | Resend email
Thread:
Lists: pgsql-general

> On Oct 31, 2025, at 17:21, Bruce Momjian <bruce(at)momjian(dot)us> wrote:
>
> I think column-level encryption, on the client side, actually does
> improve security and is preferable to file system level TDE, and I think
> many here feel the same way.

Absolutely. Unfortunately, too many IT security policies are basically a grab-bag of things that someone has read that all claimed to be "best practice," and the degree to which they can be educated on the topic is variable.

In response to

Browse pgsql-general by date

  From Date Subject
Next Message Christophe Pettus 2025-11-01 01:35:52 Re: Enquiry about TDE with PgSQL
Previous Message Bruce Momjian 2025-11-01 00:33:49 Re: Enquiry about TDE with PgSQL