Data Security / Encryption

Dear all,

Many of my customers (SugarCRM 7.x or 8.x Pro or Ent) ask us what is the best question to secure SugarCRM data.

Of course, we recommended the main "standards" security options (role/team for end user, VPN access, HTTPS, restricted access to database etc.).

But, the "new" question is more to also secure the database content itself ; is there any standard solution to easily encrypt the database content but let SugarCRM work without restriction.

We know that we could created "encrypted" field inside SugarCRM but the target is more a global database encryption.

It should be a weird question but I'm not a system security expert, so I am open to all your suggestions or experiments.

Kind regards,

Fred

Parents Reply Children
  • Thanks Matt, I agree with everything you said which is why I feel like I'm stuck. 

    I don't see a path forward for the an "On Prem" solution that contains PII that is "encrypted at source" without making the platform nearly un-usable for our staff. 

    For context, the requirement for "encrypting PII at source" is coming from our Cyber Insurance and I feel like there is real breakdown between the lawyers and a use-able solution.