---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Configure the CyberArk credential identifier

# Configure the CyberArk credential identifier {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Create the unique key that CyberArk can use to identify specific credentials in the
external repository.

## Vorbereitungen

Role required: admin

Before starting this procedure, ensure that the External
Credential Storage plugin is activated, and the [com.snc.use_external_credentials](https://servicenow-prod.fluidtopics.net/Xpwevyeu6_J73cxiLEgwXA "The MID Server integration with the CyberArk vault enables ServiceNow Orchestration, ServiceNow Discovery, and ServiceNow Service Mapping to run without storing any credentials on the instance.") system property is set to
true.

## Prozedur

1. Navigate to AllDiscoveryCredentials or OrchestrationCredentials.
2. Click New.
3. From the list of credential types, select a type that [supports CyberArk](https://servicenow-prod.fluidtopics.net/Xpwevyeu6_J73cxiLEgwXA "The MID Server integration with the CyberArk vault enables ServiceNow Orchestration, ServiceNow Discovery, and ServiceNow Service Mapping to run without storing any credentials on the instance.") external storage.
4. Complete the form using the fields from your [credential
   type](https://servicenow-prod.fluidtopics.net/JOVu8n4IWI7GHtdb4W~0vQ "Create and test the credentials that Discovery, Service Mapping, Cloud Management, and Orchestration require to access hardware and software in your network.").
5. Select the External credential store check box.  
   The User name and Password fields are replaced with the Credential ID field.  
   Hinweis:  
   If the check box is not visible, click the menu icon in the header bar and select ViewExternal Storage.
6. In the Credential ID field, enter an expression using one of these formats:  
   * If all your credentials are in the same safe, configure this safe name in the MID Server config.xml file using the [ext.cred.safe_name](https://servicenow-prod.fluidtopics.net/mQKyIoZMOVnfUh0hh1J2jw "Configure the config.xml file to grant the MID Server access to the CyberArk vault with AIM API.") parameter, and then specify the credential ID by name only, as \<credential ID\>.
   * To name credentials for a given platform that reside is a specific safe, define the credential ID as \<safe\>:\<credential ID\>:\<platform ID\>.
   * If your credentials are in multiple safes, specify the credential ID in this format: \<safe\>:\<credential ID\>.
   * If you want CyberArk to look up the credential by IP address, using an alternate safe, specify the credential ID in this format: \<safe\>:.
   * If you want CyberArk to look up the credential for an alternate platform ID in the same safe, use this format: ::\<platform ID\>
   * If you want CyberArk to look up the credential in a configured safe by the IP address rather than the credential ID, leave this field blank. This is the best practice for handling installations in which each server has a unique credential. Without this type of lookup, you must create a credential ID record in your instance for every server in your environment.

   {#t_ConfigCyberArkCredIdentifr__ul_hpl_pnw_cy}  
   Hinweis:  
   The credential ID must match the value in the Name field for the CyberArk account. The Credential ID field has a limit of 180 characters.
7. If you are storing SNMPv3 credentials in CyberArk and are using the privacy protocol and privacy key, configure the ID as follows:
   1. In the Credential Store Type field, select CyberArk.  
      The Privacy Credential ID field appears.
   2. Enter the Name of the CyberArk SNMPv3 privacy account in the Privacy Credential ID field.
   {#t_ConfigCyberArkCredIdentifr__substeps_zfr_lll_1jb}
8. Click Submit.

