---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Configure advanced algorithms for Field Encryption Enterprise

# Configure advanced algorithms for Field Encryption Enterprise {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Create a cryptographic specification to define the algorithm for a cryptographic module. Customize the encryption specifications with advanced options that are available for Field Encryption Enterprise.

## Vorbereitungen

Role required: admin

## Prozedur

1. Navigate to AllSystem SecurityField EncryptionField Encryption Experience tab, click New.
2. Select View module details from the Field Encryption overview to open the module record you want to configure.
3. Select Manage Specification Settings in the Cryptographic Specification section.
4. Select Back to navigate to the Algorithm Definition tab.
5. On the form, fill in the fields, selecting Next through each tab.  
   {#adv-algorithm-cleent__table_ff2_jwq_fqb__entry__2}

   | Field | Description |
   |-|-|
   | Crypto module | Name of the selected cryptographic module populates. |
   | Crypto purpose | The value is Symmetric Data Encryption/Decryption for Field Encryption Enterprise. |
   | Algorithm | The value is AES for Field Encryption Enterprise. |
   | Operation mode | The value is CBC for Field Encryption Enterprise. |
   | Size | Possible values are 256 and 128. Hinweis: 256-bit size is most secure for encryption and is used for Symmetric Data Encryption/Decryption for Field Encryption Enterprise. |
   | Equality preserving | Option to enable deterministic encryption. Hinweis: Selecting this option means that the encrypted value of a field should be the same when the field value remains the same. Option to enable Symmetric Data Encryption/Decryption with AES in Cipher Block Chaining (CBC) mode. |
   | Integrity | Option to provide Integrity in GCM operation and does not apply for Field Encryption Enterprise functionality. |
   [Tabelle : 1. Algorithm Definition form]

   {#adv-algorithm-cleent__table_ff2_jwq_fqb}
6. Click Submit.  
   The following example shows AES 256 CBC encryption. When Field Encryption Enterprise is active and the parent module is column_level_encryption, only Symmetric Data Encryption/Decryption AES 256 CBC applies as the crypto purpose. See [Cryptographic specification overview](https://servicenow-prod.fluidtopics.net/9DHKEp9EL2VYGfVuKxn5xQ "The Cryptographic specification is the component that defines aspects of your cryptographic module, including its cryptographic purpose and which encryption algorithm to use.") for details.

## Nächste Maßnahme

Perform one of the following operations:

* Select an entry in the Key Lifecycle table to define key lifecycle behavior. See [Configure key lifecycle states](https://servicenow-prod.fluidtopics.net/NVIDPtYNGu5nP4Wd3oW4Tw "After you have created a cryptographic specification, you can configure the lifecycle actions for the keys in your instance.") for details to complete the lifecycle definition for the key.
* Select Next to create a cryptographic key. See one of the following tasks for key generation:
  * [Generate a ServiceNow cryptographic key](https://servicenow-prod.fluidtopics.net/24qBq00hyoT4pc0kGA7nTw "Follow this procedure to upload and configure a ServiceNow cryptographic key to encrypt sensitive data.").
  * [Configure properties for customer-supplied keys](https://servicenow-prod.fluidtopics.net/Wg7gwmbhwjqas7ygpSOHmQ "If the Field Encryption Enterprise plugin is enabled, you can use system properties to define key padding, ephemeral key pair size, and a key validity period of your customer-supplied keys.").
  * [Import the wrapping / unwrapping key pair](https://servicenow-prod.fluidtopics.net/LJgZg8VNdUMfFPJrzbTVog#import-key-webservice "Configure Key Management Framework import settings before importing a key.").
  {#adv-algorithm-cleent__ul_sjf_4rw_kqb}
{#adv-algorithm-cleent__ul_yjj_crw_kqb}

