IBM Data & AI

 Welcome to the IBM Data & AI Ideas Portal for Clients! 

We welcome and appreciate your feedback on IBM Data & AI Products to help make them even better than they are today!
Before you submit an idea, please perform a search first as a similar idea may have already been reported in the portal.  If a related idea is not yet listed, please create a new idea and include with it a description which includes expected behavior as well as why having this feature would improve the service and how it would address your use case.
IBM Employees:
  • Our team welcomes any feedback  and suggestions you have for improving our offerings / products!  This forum allows us to connect your offering / product improvement ideas with IBM product and engineering teams.
  • If you have not registered on this portal please click on the following link and register.  To complete registration you will need to open the email you will receive from Aha to confirm your identity.
Additional Information:
  • The shorter URL for this site is:
  • To view our roadmaps:
  • Reminder: This is not the place to submit defects or support needs, please use normal support channel for these cases
  • Please do not use the Ideas Portal for reporting bugs - we ask that you report bugs or issues with the product by contacting IBM support.

Column encryption, select rows with different passwords without errors

When using char/varchar columns with the option of encryption each user can choose his

own password and more worse multiple passwords.

All is well in case I read the data without decrypt() then I see the raw data for encrypected data

and the real data for not encrypted data. Also case I have another column where I can identify all rows

using the same password.


But when I have a sequential scan over the table and I want to have the rows decrypted using a

certain password I see an error


SELECT DECRYPT_CHAR(column,   'password') FROM customer;

will only show the columns with the password and will fail with 26008 on the first row with a different password

(expression)  1234567890123456
(expression)  2345678901234567
26008: The internal decryption function failed.

or if the next row is not encrypted

26005: The encrypted data is wrong or corrupted.

depending on the order you may see some data or no data if the first row read doesnt use the provided password.

  • Guest
  • Feb 17 2020
  • Needs review
Why is it useful?
Who would benefit from this IDEA? DBA, Application developer
How should it work?

The query should work in the same way as when a select * is used.


In case I have 10 rows


first row encrypted with password 1

second row encrypted with password2

4 rows not encryped

another row encrypted with password 1




SELECT DECRYPT_CHAR(column,   'password') FROM customer;

should return

all 7 rows  without an error, and only the 2 rows the first and the last one

where the password can be used for the decryption. All other rows should

be shown with the raw format.




Idea Priority
Priority Justification Medium
Customer Name DHL Europe
Submitting Organization
Submitter Tags
  • Attach files

NOTICE TO EU RESIDENTS: per EU Data Protection Policy, if you wish to remove your personal information from the IBM ideas portal, please login to the ideas portal using your previously registered information then change your email to "anonymous@euprivacy.out" and first name to "anonymous" and last name to "anonymous". This will ensure that IBM will not send any emails to you about all idea submissions