Data security is enforced through the use of a single database logon and a single privileged user account with access to the file vault. The Aras Innovator application server acts as a proxy for all data and vault transactions, ensuring that all access to data is controlled by the Aras Innovator Identity Permissions control layer. MD5 is used to encrypt certain data fields before transmission (e.g. passwords). All users are assigned a unique username/password account (Identity) within Aras Innovator. These user accounts can be administered within the Aras Innovator administration screens or using LDAP.