Where Encryption Key store while deploying Blue Prism Application Server?
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
22-10-21 05:31 PM
Hi All,
Good Day!
While we are deploying Blue Prism Application Server, which place encryption key will be stored by default?
As per Blue Prism Video, it will store in automation.config file, but can we store in database?
-Thanks
Malak Dudhia
------------------------------
Malak Dudhia
------------------------------
Good Day!
While we are deploying Blue Prism Application Server, which place encryption key will be stored by default?
As per Blue Prism Video, it will store in automation.config file, but can we store in database?
-Thanks
Malak Dudhia
------------------------------
Malak Dudhia
------------------------------
3 REPLIES 3
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
24-10-21 06:58 PM
Hi @MalakDudhia1,
As per blue prism recommendation, the encryption key should be placed on the application server rather than database. Since in case of any DR (Disaster recovery) or in case the database gets corrupted, the encryption keys get lost and you won't be able to decrypt the data. It is always recommended to use App server for enterprise installations.
------------------------------
Ritansh Jatwani Senior Consultant
Consultant
EY
Gurgaon
*If you find this post helpful mark it as best answer
------------------------------
As per blue prism recommendation, the encryption key should be placed on the application server rather than database. Since in case of any DR (Disaster recovery) or in case the database gets corrupted, the encryption keys get lost and you won't be able to decrypt the data. It is always recommended to use App server for enterprise installations.
------------------------------
Ritansh Jatwani Senior Consultant
Consultant
EY
Gurgaon
*If you find this post helpful mark it as best answer
------------------------------
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
24-10-21 07:04 PM
Thank you Ritansh for your response!
So due to security reason, Blue Prism will store Encryption Key in Automate.Config file instead of Database?
------------------------------
Malak Dudhia
------------------------------
So due to security reason, Blue Prism will store Encryption Key in Automate.Config file instead of Database?
------------------------------
Malak Dudhia
------------------------------
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
27-10-21 12:54 AM
HI Malak,
You are correct in the fact that Blue Prism recommends storing the Encryption Schemes private key on the application server(s) and not in the database. The key is used to encrypt various tables in the Blue Prism database which may contain sensitive data such as the credential manager and any encrypted work queues. If you were to then store the key in the same database, all those tables would be accessible to anyone with access to the same database where the data is encrypted.

A bit like storing your car keys in your car, so I hope that clarifies things.
------------------------------
Ryan Andrews
Platform Consultant
Blue Prism
Australia/Brisbane
------------------------------
You are correct in the fact that Blue Prism recommends storing the Encryption Schemes private key on the application server(s) and not in the database. The key is used to encrypt various tables in the Blue Prism database which may contain sensitive data such as the credential manager and any encrypted work queues. If you were to then store the key in the same database, all those tables would be accessible to anyone with access to the same database where the data is encrypted.
A bit like storing your car keys in your car, so I hope that clarifies things.
------------------------------
Ryan Andrews
Platform Consultant
Blue Prism
Australia/Brisbane
------------------------------
