what is the default cryptographic algorithm being used by DPAPI in windows server 2016

%3CLINGO-SUB%20id%3D%22lingo-sub-2324914%22%20slang%3D%22en-US%22%3Ewhat%20is%20the%20default%20cryptographic%20algorithm%20being%20used%20by%20DPAPI%20in%20windows%20server%202016%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2324914%22%20slang%3D%22en-US%22%3E%3CDIV%20class%3D%22lia-message-subject-wrapper%20lia-component-subject%20lia-component-message-view-widget-subject-with-options%22%3E%3CDIV%20class%3D%22MessageSubject%22%3E%3CSPAN%3EHi%2C%3C%2FSPAN%3E%3C%2FDIV%3E%3C%2FDIV%3E%3CDIV%20class%3D%22lia-message-body%20lia-component-message-view-widget-body%20lia-component-body-signature-highlight-escalation%20lia-component-message-view-widget-body-signature-highlight-escalation%22%3E%3CDIV%20class%3D%22lia-message-body-content%22%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20am%20using%20DPAPI%20to%20encrypt%20the%20connection%20string%20with%20machine%20store%20in%20windows%20server%202016%20by%20following%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fblog.securityinnovation.com%2Fblog%2F2011%2F03%2Fencrypt-sql-connection-strings-with-dpapi.html%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fblog.securityinnovation.com%2Fblog%2F2011%2F03%2Fencrypt-sql-connection-strings-with-dpapi.html%3C%2FA%3E%26nbsp%3Bbut%20it%20doesn't%20disclose%20the%20information%20such%20as%20which%20cypher%20algorithm%20it%20is%20using%20while%20encrypting%2C%20the%20length%20of%20private%20key%20and%20who%20will%20be%20able%20to%20access%20the%20key.%20I%20would%20need%20these%20details%20to%20inform%20our%20security%20team%20that%20we%20comply%20with%20their%20security%20guidelines.%20Please%20share%20the%20details%20and%20appreciate%20the%20quick%20help.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ekey%20details%3A%3C%2FP%3E%3CP%3Ewindows%20server%202016%3C%2FP%3E%3CP%3EDPAPIProtectedConfigurationProvider%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks%2C%3C%2FP%3E%3CP%3ERaviteja%20Marasu%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FDIV%3E%3C%2FDIV%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2324914%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3ESecurity%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
New Contributor
Hi,

 

I am using DPAPI to encrypt the connection string with machine store in windows server 2016 by following https://blog.securityinnovation.com/blog/2011/03/encrypt-sql-connection-strings-with-dpapi.html but it doesn't disclose the information such as which cypher algorithm it is using while encrypting, the length of private key and who will be able to access the key. I would need these details to inform our security team that we comply with their security guidelines. Please share the details and appreciate the quick help.

 

key details:

windows server 2016

DPAPIProtectedConfigurationProvider

 

Thanks,

Raviteja Marasu

 

0 Replies