Cloud disk encryption is now available for standard ApsaraDB RDS for MySQL instances on RDS Basic Edition at no extra cost. Enable it at instance creation to encrypt all data on each data disk at the block storage level. Encrypted data cannot be decrypted even if it is leaked.
Effective date
December 18, 2024
Feature description
Cloud disk encryption protects data at the block storage level. When enabled, all data written to each data disk of your RDS instance is encrypted automatically. Snapshots created from the instance are also encrypted. No changes to your application are required.
For a comparison of database encryption options, see Comparison of different database encryption technologies.
Billing rules
Cloud disk encryption is free. Read and write operations on encrypted disks incur no additional charges.
Usage
The cloud disk encryption feature can be enabled for an RDS instance only when you create the RDS instance. For more information, see Create an ApsaraDB RDS for MySQL instance and Use the cloud disk encryption feature.