Greetings,
I'm being asked to create a web-faced database storing PII and Privacy Act 1974 (same coverage?) information such as Social Security Numbers (SSN's).
I firmly believe (as with everyone else) that SSN's should not be stored in the clear. They should be stored using Hash-246 or better. I am more than open to wisdom on this method.
But my real question is output. If my client wants to derive a report based on said individual, and needs the SSN to show up on the report, how do I get it back out of Hash and send it to the report?
thanks.
ASP.NETEncryptionMicrosoft SQL Server
Last Comment
Evan Cutler
8/22/2022 - Mon
Dave Baldwin
If you want to get it back for a report, you need encryption, not a hash. Hash is by definition a one-way process.
In addition, it may be illegal to transmit them in the clear so the question becomes how will you encrypt the reports that are developed over the internet?
Evan Cutler
ASKER
I was considering VPN over SSL.
Do you have any input on how to perform encryption?
Thanks.
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
I started with Experts Exchange in 2004 and it's been a mainstay of my professional computing life since. It helped me launch a career as a programmer / Oracle data analyst
In addition, it may be illegal to transmit them in the clear so the question becomes how will you encrypt the reports that are developed over the internet?