Relational Database Service(RDS) Encryption

Relational Database Service(RDS)

RDS allows you to set up a relational database using PostgreSQL, MySQL, MariaDB, Oracle, MS SQL Server, and Amazon Aurora.

Encryption an exiting database

To encrypt an unencrypted database after it has been created:

RDS Encryption

RDS Encryption Mechanisms

There are additional encryption mechanisms that can be used for data at rest:

RDS Option Groups

To use the TDE method, the database must be associated with an option group

TDE Encryption Modes

TDE can use two different encryption modes:

Encryption in Transit

You can secure the communication using SSL/TLS

RDS Encryption with Oracle

You can also use Oracle’s Native Network Encryption(NNE)

Nadtakan Futhoem — Sr. Software Engineer



