Product Documentation

c-treeACE V10.0 Update Guide

Previous Topic

Next Topic

Security

Security

c-treeACE services mission-critical applications in such sensitive industries as banking, finance, and health care. The increasing demand to provide users with highly secured access to systems and data continues to impact developers in these and many other industries. Providing the necessary security required to safeguard mission-critical data is crucial.

In our ongoing reviews we have implemented additional defenses for securely storing and transmitting your data as follows:

  • Advanced encryption master key length has been increased from 128 to 256 bits. c-treeACE’s advanced encryption uses a master encryption key to encrypt the following items using the AES cipher: a) the security resource in c-treeACE data and index files b) the encryption key in the transaction log file header. We also use a 256-bit key to encrypt the transaction logs and the FAIRCOM.FCS user information file.
  • Added a master encryption key store. Support was implemented for specifying a file from which to read the master encryption key.
  • Tighter security restrictions prevent a member of the ADMIN group from changing the password of the super administrator account. Prior to this change, c-treeACE allowed ADMIN group users to change the password for any ADMIN user account, including the super ADMIN account.

For more information, see Security “Lockdown”.

TOCIndex