检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
When uploading data to OBS, do not encrypt the data. Otherwise, the training will fail. Files do not need to be decompressed. Directly upload compressed packages to OBS. Upload the training script train.py to the mnist-code folder.
After the cluster is restarted, create a user who uses MD5 encryption to encrypt passwords. In addition, modify the pg_hba.conf file to change the client connection mode to MD5. Log in as a new user.
Table 8 Parameter Parameter Type Description param_name String Parameter name. param_type String Parameter type. param_group String Parameter group. default_value String Initial value of a parameter. id String Parameter ID. encryption Boolean Whether to encrypt the data. hint String
Value range: AES256, indicating Advanced Encryption Standard (AES) is used to encrypt the object in SSE-C. For details, see Table 17. Default value: None sseAlgorithm SSEAlgorithmEnum No Explanation: Encryption algorithm. Restrictions: AES256 Value range: See Table 16.
OBS uses KMS keys to encrypt objects. The checksum, together with the specified algorithm, are stored as part of the object's metadata. If server-side encryption is requested for the object, the checksum is stored in encrypted form.
Precautions gs_dump and gs_dumpall encrypt the exported data files. These files are decrypted before being imported to prevent data disclosure for higher database security.
For security, encrypt your AK/SK and store them in the configuration file or environment variables. # In this example, the AK/SK are stored in environment variables for identity authentication.
Value range: AES256, indicating AES is used to encrypt the object in SSE-C. For details, see Table 7. Default value: None sseAlgorithm SSEAlgorithmEnum No Explanation: Encryption algorithm. Restrictions: Only AES256 is supported. Value range: See Table 6.
After the KMS key is deleted, users cannot encrypt disks.
After the KMS key is deleted, users cannot encrypt disks.
Server-side encryption: You can use server-side encryption to encrypt data uploaded to OBS buckets. Cross-origin resource sharing (CORS): You can configure a CORS rule to enable cross-domain quests for OBS.
Server-side encryption: You can use server-side encryption to encrypt data uploaded to OBS buckets. Cross-origin resource sharing (CORS): You can configure a CORS rule to enable cross-domain quests for OBS.
KMS Key: Select a KMS key and use it to encrypt sensitive data. If no KMS key is available, click Access KMS to go to the KMS console and create one. Agent: Select a DataArts Migration cluster as the connection agent.
Fully-encrypted database framework with software and hardware integrated Fully-encrypted database framework with software and hardware integrated: Based on the virtual TEE, the fully-encrypted framework can encrypt memory and ensure security isolation.
Value range: AES256, indicating AES is used to encrypt the object in SSE-C. For details, see Table 10. Default value: None sseAlgorithm SSEAlgorithmEnum No Explanation: Encryption algorithm. Restrictions: Only AES256 is supported. Value range: See Table 12.
data type privacy_detail String Personal privacy data details file_type String File type mimetypes String File type rule_list List<Map<String,String>> List of matched rules keyword String Keyword for matching sensitive data rules available_zone String AZ encrypted String Whether to encrypt
Decrypt data Function This API is used to decrypt data. Constraints When decrypting the data encrypted using asymmetric keys, you need to specify the key ID and encryption algorithm. If the specified key ID and encryption algorithm do not match those used for encrypting data, the
Decrypt a DEK Function This API is used to decrypt DEKs using specified CMKs. Calling Method For details, see Calling APIs. URI POST /v1.0/{project_id}/kms/decrypt-datakey Table 1 Path Parameters Parameter Mandatory Type Description project_id Yes String Project ID Request Parameters
Encrypted Transmission Overview Encrypted transmission allows you to protect your data transmitted between clients and SFS Turbo file systems using the TLS protocol. As data needs to be encrypted and decrypted, you may experience a slight decrease in performance when encrypted transmission
Encrypted Transmission Configuring the Encrypted Transmission Typical Scenario: Collecting Local Static Logs and Uploading Them to HDFS Parent topic: Using Flume