Pattern 99 / SECURITY
Envelope Encryption
Use this when Protecting data with manageable key rotation.
- Pressure
- Protecting data with manageable key rotation
- Mechanism
- Encrypt data with data keys and protect those keys with rotating master keys
- Toll
- Key hierarchy, access control, and recovery procedures add complexity