What is GDPR? From Wikipedia:
The General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679) is a regulation by which the European Parliament, the Council of the European Union and the European Commission intend to strengthen and unify data protection for all individuals within the European Union (EU). It also addresses the export of personal data outside the EU. The GDPR aims primarily to give control back to citizens and residents over their personal data and to simplify the regulatory environment for international business by unifying the regulation within the EU.[1] When the GDPR takes effect, it will replace the data protection directive (officially Directive 95/46/EC)[2] of 1995. The regulation was adopted on 27 April 2016. It becomes enforceable from 25 May 2018 after a two-year transition period and, unlike a directive, it does not require national governments to pass any enabling legislation, and is thus directly binding and applicable.
May 25th, 2018 is only 3 months away. For those companies in the EU and any company that interacts with EU residences, what have you done to protect IBM MQ messages that contain personal data?
- Is the message data encrypted?
- Are the channels between queue managers using encryption?
- Are the channels between client applications and the queue managers using encryption?
- When client applications connect to a remote queue manager, are the client connections authenticated?
Capitalware has created and sells a variety of MQ solutions that solve the above listed questions:
- MQ Message Encryption* for Data Protection for Queues (data at rest)
- MQ Channel Encryption for Data Protection for Channels (data in flight)
- MQ Authenticate Security Exit for Authentication
* MQME does have support for Pub/Sub encryption. Several customers have been testing and using it for about 9 months. I just haven’t made the official announcement.
And if your company’s auditors want to know ‘who is doing what in MQ’, we also have created and sell the following MQ solutions:
- MQ Auditor for auditing/tracking all MQ API calls that an application performs
- MQ Channel Connection Inspector for tracking channel connections (official release very soon)
Regards,
Roger Lacroix
Capitalware Inc.