---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Activate External Key Management Service

# Activate External Key Management Service {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Install the External Key Management Service (EKMS) plugin and configure user permissions to enable external key management functionality.

## Vorbereitungen

Roles required: admin, security_admin, and sn_kmf.cryptographic_manager

Dependencies:  
The following plugins need to be already installed on your environment:

* Key Management Framework Scoped App
* Field Encryption Enterprise
{#activate-external-key-management__ul_vyy_r1j_g3c}

## Warum und wann dieser Vorgang ausgeführt wird

Activating EKMS installs the necessary components to encrypt ServiceNow data with external keys managed in AWS Key Management Service.

## Prozedur

1. Navigate to AllSystem DefinitionPlugins.
2. Under Search your licensed applications and plugins, search for <kbd class="ph userinput">Platform Encryption External Key Management</kbd>.  
   The search should reveal the plugin. If you purchase a subscription for External Key Management Service, you can also see this plugin available.  
   Wichtig:  
   To activate External Key Management Service, you must first purchase a subscription to the service and its dependencies: Field Encryption Enterprise and Key Management Framework Scoped App. Your account manager can arrange to have the plugin activated on your organization's production and non-production instances.
3. Select Install  
   Hinweis:  
   When domain separation and delegated admin are enabled in an instance, the administrative user must be in the global domain. Otherwise, the following error appears: Application installation is unavailable because another operation is running: Plugin Activation for \<plugin name\>.

## Ergebnisse

The EKMS plugin is now installed and activated. You can proceed to configure your external key integration.

## Nächste Maßnahme

Next steps:

* Set up AWS Key Management Service access
* Configure the EKMS key definition in ServiceNow
**Zugehörige Konzepte**   

* [External Key Management Service](https://servicenow-prod.fluidtopics.net/GROM6j6kSkoH7I54uwdD7g "External Key Management Service (EKMS) enables you to integrate Field Encryption with your own external key management systems.")  
**Zugehörige Tasks**   

* [Configure an external key definition](https://servicenow-prod.fluidtopics.net/ljQ3vNp3pALVUrun2sAIIw "Configure your external encryption key to use in External Key Management Service (EKMS).")

