Encryption Key Provider

PK Protect’s HDFS IDP uses either Bouncy Castle or Java standard encryption as the encryption library for key encryption and data encryption. A property in the HDFSIDPconfig properties file determines which encryption library the IDP uses. To use Java standard encryption, set the property to “jce”. To use Bouncy Castle, set the property to “bc”.

encryption.provider = [jce/bc]

When you want to use Bouncy Castle, you will need to edit the file and manually copy two JAR files:

  1. Locate and edit the file by adding the following line:
    "security.provider.10=org.bouncycastle.jce.provider.BouncyCastleProvider" in the security provider section.

  2. Copy the bcpg-jdk15on-150.jar and bcprov-ext-jdk15on-150.jar files from:
    /opt/Dataguise/DgSecure/IDPs/HDFSIDP/expandedArchive/WEB-INF/lib to

  3. Restart the HDFS IDP.

