October 5, 2011

Amazon S3, Cloud Storage with AES Encryption

This has been a long anticipated feature in Amazon S3. With S3’s server-side-encryption (SSE), data stored on S3 can be encrypted using AES-256, which will add an additional layer of protection for the data. It may be useful for meeting HIPAA compliance and, in general, for lot of applications that require data protection.

The S3 encryption and decryption are done on the fly for each object stored, presumably with no performance penalties. If the encryption/decryption can be done in real-time at wire-speed, then this can become the default way of storing data on S3.

Server-side-encryption is in addition to the client-side-encryption that has been available.

There is no additional cost for storing encrypted data.