Hacker News new | ask | show | jobs
by danpalmer 3183 days ago
It depends on how they get access, and it can prevent some types of access. For example, they can’t steal backups, and they may need access through a web app server that has the database key rather than being able to go directly to the database. It’s not a catch-all solution but it is correct security practice and they should have been doing it.