cancel
Showing results for 
Search instead for 
Did you mean: 

Where Encryption Key store while deploying Blue Prism Application Server?

MalakDudhia1
Level 5
Hi All,

Good Day!

While we are deploying Blue Prism Application Server, which place encryption key will be stored by default? 

As per Blue Prism Video, it will store in automation.config file, but can we store in database?

-Thanks
Malak Dudhia

------------------------------
Malak Dudhia
------------------------------
3 REPLIES 3

ritansh.jatwani
Level 9
Hi @MalakDudhia1,

As per blue prism recommendation, the encryption key should be placed on the application server rather than database. Since in case of any DR (Disaster recovery) or in case the database gets corrupted, the encryption keys get lost and you won't be able to decrypt the data. It is always recommended to use App server for enterprise installations.​

------------------------------
Ritansh Jatwani Senior Consultant
Consultant
EY
Gurgaon
*If you find this post helpful mark it as best answer
------------------------------

Thank you Ritansh for your response!

So due to security reason, Blue Prism will store Encryption Key in Automate.Config file instead of Database?


------------------------------
Malak Dudhia
------------------------------

HI Malak,

You are correct in the fact that Blue Prism recommends storing the Encryption Schemes private key on the application server(s) and not in the database. The key is used to encrypt various tables in the Blue Prism database which may contain sensitive data such as the credential manager and any encrypted work queues. If you were to then store the key in the same database, all those tables would be accessible to anyone with access to the same database where the data is encrypted.

32434.png
A bit like storing your car keys in your car, so I hope that clarifies things.

------------------------------
Ryan Andrews
Platform Consultant
Blue Prism
Australia/Brisbane
------------------------------