Files
grafana/docs/sources/administration/database-encryption-enterprise.md
Grot (@grafanabot) 5d382b60c3 Add concept about Grafana and Grafana Enterprise database encryption (#41853) (#42260)
* Add concept about Grafana database encryption.
* Add database encryption information for Enterprise.

(cherry picked from commit 59b0f534c5)

Co-authored-by: Ursula Kallio <73951760+osg-grafana@users.noreply.github.com>
2021-11-24 21:31:41 +01:00

937 B
Raw Blame History

+++ title = "Database encryption (Enterprise)" description = "Grafana Enterprise database encryption" keywords = ["grafana", "enterprise", "database", "encryption", "documentation"] aliases = [""] weight = 440 +++

Grafana Enterprise database encryption

If you are using Grafana Enterprise, you can change Grafanas cryptographic mode of operation from AES-CFB to AES-GCM, and integrate with a key management system (KMS) provider.

Changing your encryption mode to AES-GCM

Grafana encrypts secrets using Advanced Encryption Standard in Cipher FeedBack mode (AES-CFB). You might prefer to use AES in Galois/Counter Mode (AES-GCM) instead, to meet your companys security requirements or in order to maintain consistency with other services.

To change your encryption mode, update the algorithm value in the [security.encryption] section of your Grafana configuration file. For details, refer to Enterprise configuration.