Secure IoT edge data with Azure SQL Edge and DH2i

Published Oct 06 2020 01:24 PM 3,883 Views
Microsoft

Microsoft Azure SQL Edge, now generally available, and DH2i DxOdyssey for IoT are combining native on-device capabilities with dynamic tunneling technology for an optimal IoT edge security solution.

 

It’s no news that IoT devices are generating more and more of data, but did you know that ? *

With so much data being created at the edge, security is one of the top concerns for IoT adopters. In a recent study, 97% of IoT adopters have security concerns when implementing IoT, and the top concern was ensuring data privacy.** Data needs to be protected both at the edge and as it moves outside the device boundaries to edge networks and other external networks and devices.

 

Azure SQL Edge is a small footprint data engine optimized for IoT workloads.

Built on the same code base as Microsoft SQL Server and Azure SQL, Azure SQL Edge provides the same industry leading security, familiar developer experience, and tooling that many teams already know and trust – now extended to IoT deployments for real-time intelligence.

Thanks to this shared codebase, application developers who have been building solutions for SQL Server and Azure SQL can extend their skills to deploy the same code to build IoT solutions at the edge that work with or without network connectivity.

Azure SQL Edge answers the need for an IoT-specific data platform by:

  • Providing the flexibility to develop solutions that work with or without network connectivity and help enable secure data movement of the local edge data to on-premises datacenters or to the cloud.
  • Offering support with standard tooling, programming languages, and a query language (T-SQL) that are already familiar to developers and compatible with existing code.
  • Enabling artificial intelligence (AI) and analytics at the edge.
  • Including native support for ingesting and streaming time-series data.

 

Unparalleled database security of the Microsoft SQL data engine.

The same security features of SQL Server Enterprise available in Azure SQL Edge ensure your data is secure on the device, customer data will be kept safe, and regulatory compliance will be met.

Here are the built-in security features that you won’t have to worry about in your solution thanks to Azure SQL Edge:

  • ​Role-based access control (RBAC) and attribute-based access control (ABAC) to manage access to specific resources based on the user’s group (or role) and/or based on the attributes of the user, target data or resource
  • Data protection with the ability to encrypt sensitive data and execute rich computations on encrypted data with Transparent Data Encryption (TDE) and Always Encrypted capabilities
  • Sensitive PII/GDPR data discovery using SQL Data Discovery and Classification tool in SSMS
  • Data classification to help organizations comply with security regulations by allowing data to be categorized by sensitivity and business impact

Azure SQL Edge extends the security of Azure and SQL Server to the Edge, protecting your data within the database and the Azure IoT Hub infrastructure. 

 

Enhanced secure data movement with DxOdyssey

Beyond the security of the Azure SQL Edge and Azure IoT Hub network, Microsoft has partnered with DH2i to support enhanced security of data movement with its Software Defined Perimeter (SPD) software, DxOdyssey for IoT. DH2i is a software vendor with over 10 years of experience helping customers around the world enhance their data security and SQL Server capabilities with their innovative software offerings. Where common approaches to networking such as VPNs, open ports and SD-WAN are insufficient and lack the security capabilities required to support IoT deployments, DH2i’s DxOdyssey (DxO) for IoT extends SDP software capabilities to edge devices, allowing seamless bi-directional access from edge devices to the datacenter and cloud. As data moves outside of edge device perimeters and between networks, DxO for IoT ensures the data remains secure.

 

Picture1.png

 

DxO for IoT is purpose-built for IoT use cases where bi-directional communication is needed between edge devices such as sensors, edge gateways or edge servers. Its technology:

  • provides discreet, private and secure network communication over untrusted networks, such as the public internet.
  • eliminates the lateral network attack surface and is more secure and performant than VPNs, open ports or SD-WAN.
  • creates a Zero Trust network architecture for IoT devices and applications while consistently proving less expensive, easier and more effective than those legacy alternatives.

This lightweight software runs on any Linux or Windows host and can be installed on any IoT device or container on x64 and ARM 64 architecture.

When used in tandem with Azure SQL Edge, organizations can ensure their data is secure on the edge device and when passing outside of edge networks and IoT Hub boundaries.

 

Join us on October 21 to deep dive into edge security and learn about Azure SQL Edge and DxOdyssey for IoT including a demo of how to securely connect a remote user to an edge device, Register Now 

 

 

 

* “Edge Computing Solutions for Industrial IoT”, July 2018, Gartner, “Top Strategic IoT Trends and Technologies Through 2023” September 2018, Gartner

** “IoT Signals” September 2020, Microsoft.

1 Comment
Microsoft

Just in: If you are looking for more details on this Azure SQL Edge and DxOdyssey for IoT integration, DH2i just published a great recap of the webinar including a detailed outline of the demo.  Check it out here: https://bit.ly/2ISD7Pl

%3CLINGO-SUB%20id%3D%22lingo-sub-1750690%22%20slang%3D%22en-US%22%3ESecure%20IoT%20edge%20data%20with%20Azure%20SQL%20Edge%20and%20DH2i%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1750690%22%20slang%3D%22en-US%22%3E%3CP%3EMicrosoft%20Azure%20SQL%20Edge%2C%20now%20generally%20available%2C%20and%20DH2i%20DxOdyssey%20for%20IoT%20are%20combining%20native%20on-device%20capabilities%20with%20dynamic%20tunneling%20technology%20for%20an%20optimal%20IoT%20edge%20security%20solution.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EIt%E2%80%99s%20no%20news%20that%20IoT%20devices%20are%20generating%20more%20and%20more%20of%20data%2C%20but%20did%20you%20know%20that%20%3F%26nbsp%3B*%3C%2FP%3E%0A%3CP%3EWith%20so%20much%20data%20being%20created%20at%20the%20edge%2C%20security%20is%20one%20of%20the%20top%20concerns%20for%20IoT%20adopters.%20In%20a%20recent%20study%2C%2097%25%20of%20IoT%20adopters%20have%20security%20concerns%20when%20implementing%20IoT%2C%20and%20the%20top%20concern%20was%20ensuring%20data%20privacy.**%20Data%20needs%20to%20be%20protected%20both%20at%20the%20edge%20and%20as%20it%20moves%20outside%20the%20device%20boundaries%20to%20edge%20networks%20and%20other%20external%20networks%20and%20devices.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%3CSTRONG%3EAzure%20SQL%20Edge%20is%3C%2FSTRONG%3E%3C%2FSPAN%3E%3CSTRONG%3E%20a%20small%20footprint%20data%20engine%20optimized%20for%20IoT%20workloads.%20%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3EBuilt%20on%20the%20same%26nbsp%3Bcode%26nbsp%3Bbase%26nbsp%3Bas%20Microsoft%20SQL%20Server%20and%20Azure%20SQL%2C%20%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Finternet-of-things%2Fbringing-microsoft-sql-to-the-iot-edge%2Fba-p%2F1694409%22%20target%3D%22_self%22%3EAzure%20SQL%20Edge%3C%2FA%3E%26nbsp%3B%3C%2FSPAN%3E%3CSPAN%3Eprovides%20the%20same%20industry%20leading%20security%2C%20familiar%20developer%20experience%2C%20and%20tooling%20that%20many%20teams%20already%20know%26nbsp%3Band%26nbsp%3Btrust%26nbsp%3B%E2%80%93%20now%20extended%20to%20IoT%20deployments%20for%20real-time%20intelligence%3C%2FSPAN%3E.%3C%2FP%3E%0A%3CP%3EThanks%20to%20this%20shared%20codebase%2C%20application%20developers%20who%20have%20been%20building%20solutions%20for%20SQL%20Server%20and%20Azure%20SQL%20can%20extend%20their%20skills%20to%20deploy%20the%20same%20code%20to%20build%20IoT%20solutions%20at%20the%20edge%20that%20work%20with%20or%20without%20network%20connectivity.%3C%2FP%3E%0A%3CP%3EAzure%20SQL%20Edge%20answers%20the%20need%20for%20an%20IoT-specific%20data%20platform%20by%3A%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3EProviding%20the%20flexibility%20to%20develop%20solutions%20that%20work%20with%20or%20without%20network%20connectivity%20and%20help%20enable%20secure%20data%20movement%20of%20the%20local%20edge%20data%20to%20on-premises%20datacenters%20or%20to%20the%20cloud.%3C%2FLI%3E%0A%3CLI%3EOffering%20support%20with%20standard%20tooling%2C%20programming%20languages%2C%20and%20a%20query%20language%20(T-SQL)%20that%20are%20already%20familiar%20to%20developers%20and%20compatible%20with%20existing%20code.%3C%2FLI%3E%0A%3CLI%3EEnabling%20artificial%20intelligence%20(AI)%20and%20analytics%20at%20the%20edge.%3C%2FLI%3E%0A%3CLI%3EIncluding%20native%20support%20for%20ingesting%20and%20streaming%20time-series%20data.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EUnparalleled%20database%20security%20of%20the%20Microsoft%20SQL%20data%20engine%3C%2FSTRONG%3E.%3C%2FP%3E%0A%3CP%3EThe%20same%20security%20features%20of%20SQL%20Server%20Enterprise%20available%20in%20Azure%20SQL%20Edge%20ensure%20your%20data%20is%20secure%20on%20the%20device%2C%20customer%20data%20will%20be%20kept%20safe%2C%20and%20regulatory%20compliance%20will%20be%20met.%3C%2FP%3E%0A%3CP%3EHere%20are%20the%20built-in%20security%20features%20that%20you%20won%E2%80%99t%20have%20to%20worry%20about%20in%20your%20solution%20thanks%20to%20Azure%20SQL%20Edge%3A%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3ERole-based%20access%20control%20(RBAC)%20and%20attribute-based%20access%20control%20(ABAC)%20to%20manage%20access%20to%20specific%20resources%20based%20on%20the%20user%E2%80%99s%20group%20(or%20role)%20and%2For%20based%20on%20the%20attributes%20of%20the%20user%2C%20target%20data%20or%20resource%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CUL%3E%0A%3CLI%3EData%20protection%20with%20the%20ability%20to%20encrypt%20sensitive%20data%20and%20execute%20rich%26nbsp%3Bcomputations%20on%20encrypted%20data%20with%20Transparent%20Data%20Encryption%20(TDE)%20and%20Always%20Encrypted%20capabilities%3C%2FLI%3E%0A%3CLI%3ESensitive%20PII%2FGDPR%20data%20discovery%20using%26nbsp%3BSQL%26nbsp%3BData%26nbsp%3BDiscovery%20and%20Classification%20tool%20in%26nbsp%3BSSMS%3C%2FLI%3E%0A%3CLI%3EData%20classification%20to%20help%20organizations%20comply%20with%20security%20regulations%20by%20allowing%20data%20to%20be%20categorized%20by%20sensitivity%20and%20business%20impact%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3EAzure%20SQL%20Edge%20extends%20the%20security%20of%20Azure%20and%20SQL%20Server%20to%20the%20Edge%2C%20protecting%20your%20data%20within%20the%20database%20and%20the%20Azure%20IoT%20Hub%20infrastructure.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EEnhanced%20secure%20data%20movement%20with%20DxOdyssey%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3EBeyond%20the%20security%20of%20the%20Azure%20SQL%20Edge%20and%20Azure%20IoT%20Hub%20network%2C%20Microsoft%20has%20partnered%20with%20DH2i%20to%20support%20enhanced%20security%20of%20data%20movement%20with%20its%20Software%20Defined%20Perimeter%20(SPD)%20software%2C%20%3CA%20href%3D%22https%3A%2F%2Fdh2i.com%2Fdxodyssey-for-iot%2F%22%20target%3D%22_self%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3EDxOdyssey%20for%20IoT%3C%2FA%3E.%20DH2i%20is%20a%20software%20vendor%20with%20over%2010%20years%20of%20experience%20helping%20customers%20around%20the%20world%20enhance%20their%20data%20security%20and%20SQL%20Server%20capabilities%20with%20their%20innovative%20software%20offerings.%20Where%20common%20approaches%20to%20networking%20such%20as%20VPNs%2C%20open%20ports%20and%20SD-WAN%20are%20insufficient%20and%20lack%20the%20security%20capabilities%20required%20to%20support%20IoT%20deployments%2C%20DH2i%E2%80%99s%20DxOdyssey%20(DxO)%20for%20IoT%20extends%20SDP%20software%20capabilities%20to%20edge%20devices%2C%20allowing%20seamless%20bi-directional%20access%20from%20edge%20devices%20to%20the%20datacenter%20and%20cloud.%20As%20data%20moves%20outside%20of%20edge%20device%20perimeters%20and%20between%20networks%2C%20DxO%20for%20IoT%20ensures%20the%20data%20remains%20secure.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-center%22%20image-alt%3D%22Picture1.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F224566i1AEE87ECAA28F36F%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20title%3D%22Picture1.png%22%20alt%3D%22Picture1.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EDxO%20for%20IoT%20is%20purpose-built%20for%20IoT%20use%20cases%20where%20bi-directional%20communication%20is%20needed%20between%20edge%20devices%20such%20as%20sensors%2C%20edge%20gateways%20or%20edge%20servers.%20Its%20technology%3A%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3Eprovides%20discreet%2C%20private%20and%20secure%20network%20communication%20over%20untrusted%20networks%2C%20such%20as%20the%20public%20internet.%3C%2FLI%3E%0A%3CLI%3Eeliminates%20the%20lateral%20network%20attack%20surface%20and%20is%20more%20secure%20and%20performant%20than%20VPNs%2C%20open%20ports%20or%20SD-WAN.%3C%2FLI%3E%0A%3CLI%3Ecreates%20a%20Zero%20Trust%20network%20architecture%20for%20IoT%20devices%20and%20applications%20while%20consistently%20proving%20less%20expensive%2C%20easier%20and%20more%20effective%20than%20those%20legacy%20alternatives.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3EThis%20lightweight%20software%20runs%20on%20any%20Linux%20or%20Windows%20host%20and%20can%20be%20installed%20on%20any%20IoT%20device%20or%20container%20on%20x64%20and%20ARM%2064%20architecture.%3C%2FP%3E%0A%3CP%3EWhen%20used%20in%20tandem%20with%20Azure%20SQL%20Edge%2C%20organizations%20can%20ensure%20their%20data%20is%20secure%20on%20the%20edge%20device%20and%20when%20passing%20outside%20of%20edge%20networks%20and%20IoT%20Hub%20boundaries.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%3CSTRONG%3EJoin%20us%20on%20October%2021%26nbsp%3B%3C%2FSTRONG%3E%3C%2FSPAN%3E%3CSPAN%3Eto%20deep%20dive%20into%26nbsp%3Bedge%20security%20and%26nbsp%3B%3C%2FSPAN%3E%3CSPAN%3Elearn%26nbsp%3Babout%20Azure%20SQL%20Edge%20and%26nbsp%3B%3C%2FSPAN%3E%3CSPAN%3EDxOdyssey%20for%20IoT%3C%2FSPAN%3E%3CSPAN%3E%26nbsp%3Bincluding%20a%20demo%20of%26nbsp%3Bhow%20to%20securely%20connect%20a%20remote%20user%20to%20an%20edge%20device%2C%3CSTRONG%3E%26nbsp%3B%3C%2FSTRONG%3E%3C%2FSPAN%3E%3CA%20href%3D%22https%3A%2F%2Fchannel9.msdn.com%2FShows%2FInternet-of-Things-Show%2FDeep-Dive-Secure-IoT-Deployments-with-Azure-SQL-Edge--DxOdyssey%22%20target%3D%22_self%22%20rel%3D%22noopener%20noreferrer%22%3E%3CSPAN%3E%3CSTRONG%3ERegister%26nbsp%3BNow%3C%2FSTRONG%3E%3C%2FSPAN%3E%3C%2FA%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E*%20%E2%80%9CEdge%20Computing%20Solutions%20for%20Industrial%20IoT%E2%80%9D%2C%20July%202018%2C%20Gartner%2C%20%E2%80%9CTop%20Strategic%20IoT%20Trends%20and%20Technologies%20Through%202023%E2%80%9D%20September%202018%2C%20Gartner%3C%2FP%3E%0A%3CP%3E**%20%E2%80%9CIoT%20Signals%E2%80%9D%20September%202020%2C%20Microsoft.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-1750690%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-center%22%20image-alt%3D%22SQL%20Edge%20and%20DxOdyssey%20Image%20.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F224623i6B8AF18464D959DB%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20title%3D%22SQL%20Edge%20and%20DxOdyssey%20Image%20.png%22%20alt%3D%22SQL%20Edge%20and%20DxOdyssey%20Image%20.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CDIV%3ELearn%20how%20to%20create%20an%20end%20to%20end%20secure%20IoT%20solution%20with%20Microsoft's%20Azure%20SQL%20Edge%20(now%20generally%20available)%20and%20DH2i's%20DxOdyssey%20for%20IoT.%3C%2FDIV%3E%3C%2FLINGO-TEASER%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1950381%22%20slang%3D%22en-US%22%3ERe%3A%20Secure%20IoT%20edge%20data%20with%20Azure%20SQL%20Edge%20and%20DH2i%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1950381%22%20slang%3D%22en-US%22%3E%3CP%3EJust%20in%3A%20If%20you%20are%20looking%20for%20more%20details%20on%20this%20Azure%20SQL%20Edge%20and%26nbsp%3B%3CSPAN%3EDxOdyssey%20for%20IoT%20integration%3C%2FSPAN%3E%2C%20DH2i%20just%20published%20a%20great%20recap%20of%20the%20webinar%20including%20a%20detailed%20outline%20of%20the%20demo.%26nbsp%3B%20Check%20it%20out%20here%3A%26nbsp%3B%3CSPAN%3E%3A%26nbsp%3B%3C%2FSPAN%3E%3CA%20href%3D%22https%3A%2F%2Fbit.ly%2F2ISD7Pl%22%20data-attribute-index%3D%228%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fbit.ly%2F2ISD7Pl%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
Version history
Last update:
‎Oct 06 2020 01:31 PM
Updated by: