DataSunrise Database Firewall for TiDB
DataSunrise Database Firewall for TiDB is a necessary tool for sensitive data protection. Firewall for TiDB works as an intermediary between the database and users. Firewall works in real-time and blocks suspicious and forbidden queries. DataSunrise Firewall for TiDB guarantees protection against intrusion attempts, SQL injections, and insider attacks.
Our solution lets you to protect sensitive data from malicious attacks from outside bad actors and employees. With our Firewall, you can be sure that your sensitive data is protected because of the deep traffic analysis and filtering. All traffic is analyzed according to previously created security rules. If there is a match with a forbidden security rule, the firewall blocks this query.
As we said before firewall works as an intermediary between clients and the database. It means that the firewall does not allow users to make queries directly to the database. Firewall by DataSunrise filters, monitors, and records queries therefore preventing the execution of the queries that break the settled rules. The operating principle of the firewall is very simple. Firewall is analyzing every query in compliance with the security rule. Everytime when the rule is triggered, the firewall blocks the query and disconnects the user from the database. Security rules filtrate database traffic according to the host, application, or database user that initiated the query. Moreover, you can configure the settings of a firewall to block specified queries of DDL and DML transactions and signs of SQL injections.
Thanks to ongoing auditing of database activity TiDB firewall analyzes incoming queries, database output, etc. As far as all information is logged and firewall can apply security rules, sensitive data is obfuscated and forbidden actions are blocked.
Our Database Firewall for TiDB scanning database for potential threats. Moreover, the firewall captures malicious harmful activity in real-time protecting your database from bad actors. DataSunrise Database Firewall for TiDB supports the following features:
- Main user authentication method;
- Processing of SSL and TLS-encrypted traffic;
- Processing of prepared statements and multi-statements;
- Multiresultsets processing;
- Processing of LOAD XML and LOAD DATA operations;
- Conversion of binary data into text format;
- Tracking of еру system and user-defined variables.
With our Database Firewall, you can easily prevent data leakage and detect the preparations of a data breach at an early stage.