To leverage the Data Protection (DP) API for encrypting fields within your agent.xml configuration file, the Agent will utilize encrypted fields based on dpapi: prefixes. This approach ensures no 3rd party software by itself can decrypt fields that you have encrypted.
Example of agent.xml
Enter In Encrypted Values
<?xml version="1.0" encoding="ISO-8859-1" standalone="no"?> <config> <agent> <subscribe> <task> <task_name>example_subscribe</task_name> <message_connection password="dpapi:MbsPassword" user="MbsUser">amqps://example.perspectium.net</message_connection> <instance_connection password="dpapi:MbsPassword" user="SnUser">https://example.service-now.com</instance_connection> <handler>com.perspectium.replicator.sql.SQLSubscriber</handler> <decryption_key>Some decryption key here</decryption_key> <database_type>mysql</database_type> <database_server>localhost</database_server> <database_port>3306</database_port> <database_user>perspectium</database_user> <database_password>encrypt:DbPassword</database_password> <database_parms>characterEncoding=UTF-8</database_parms> <database>psp_repl</database> </task> </subscribe> <max_reads_per_connect>4000</max_reads_per_connect> <polling_interval>5</polling_interval> <skip_message_set_processing/> </agent> </config>
Encrypted Values After Startup
<?xml version="1.0" encoding="ISO-8859-1" standalone="no"?> <config> <agent> <subscribe> <task> <task_name>example_subscribe</task_name> <message_connection password="dpapied:vlOtU71yu8N/EFIJH85SauokjluHg3zcxvdAmB0=" user="MbsUser">amqps://example.perspectium.net</message_connection> <instance_connection password="dpapied:vlOtU71yu8N/EFIJH85SSJMF8Q5huHg3zc804oGAmB0=" user="SnUser">https://example.service-now.com</instance_connection> <handler>com.perspectium.replicator.sql.SQLSubscriber</handler> <decryption_key>Some decryption key here</decryption_key> <database_type>mysql</database_type> <database_server>localhost</database_server> <database_port>3306</database_port> <database_user>perspectium</database_user> <database_password>encrypted:vlOtU71asdfsadf/EFIJHasdfasfjlj=</database_password> <database_parms>characterEncoding=UTF-8</database_parms> <database>psp_repl</database> </task> </subscribe> <max_reads_per_connect>4000</max_reads_per_connect> <polling_interval>5</polling_interval> <skip_message_set_processing/> </agent> </config>