---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Enforce certificate trust \[Updated in Security Center 1.3, removed in 2.0, added in 7.0\]

# Enforce certificate trust \[Updated in Security Center 1.3, removed in 2.0, added in 7.0\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Use system properties to ensure that certificate expiration and trust are checked for certificates received from outbound HTTPS call endpoints when host verification is not performed.
When com.glide.communications.trustmanager_trust_all is set to true, then certificate expiration and trust are not checked for the certificate received from an outbound HTTPS call
endpoint when host verification is not performed.

Verify that the com.glide.communications.trustmanager_trust_all system property is set to the recommended value of false. This ensures that your instance only trusts certificates that
it can verify against the JVM certificate store. Self-signed and enterprise-signed certificates are not trusted. This property only applies when com.glide.communications.httpclient.verify_hostname is set to
false.  
Hinweis:  
The values for these properties are [Safe override](https://servicenow-prod.fluidtopics.net/Bye1AWFlHWxTm2gYQ9GhTg "The values for these properties can't be altered once changed (they are non-revertible).") and cannot be altered once changed (they are non-revertible). For security purposes, do not change this property value. If you have further questions, contact Customer Service and Support.

## More information {#sc-certificate-trust__section_more_information}

{#sc-certificate-trust__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Property name | com.glide.communications.trustmanager_trust_all |
| Configuration type | System Properties (/sys_properties_list.do) |
| Category | [Communications](https://servicenow-prod.fluidtopics.net/KYWXOfqNUW0uNGo3zippJA "This control ensures proper encryption using strong algorithms and ciphers. This includes ensuring the recommended version of TLS is used for client connectivity, use of strong cipher suites, use of trusted and signed certificates, ensuring connections are encrypted between components and logging of connection failures.") |
| Purpose | To enforce certificate validation for outgoing requests. |
| Recommended value | false |
| Security risk rating | 5.7 |
| Functional impact | This remediation enforces strict validation on certificate CA (certificate authority) field. If a trusted entity (CA) issued the certificate, the instance accepts it for further use. |
| Security risk | (Medium) For confidentiality and integrity reasons, application should validate the certificate's CA before using the certificate for any transactional operations. |
| References | [Certificates](https://servicenow-prod.fluidtopics.net/3t_R~Nwief5DpazHx4Xp8w "Your instance requires certificates to establish secure connections and validate signatures.") [Verify certificate chain and hostname \[New in Security Center 1.3 and updated in 2.0\]](upaAbS__UHyQ~ZFJBin8Mw "Configure the com.glide.communications.httpclient.verify_hostname property to prevent man-in-the-middle-attacks by ensuring that the certification verification process is executed.") |
[ ]

{#sc-certificate-trust__table_ajc_b43_3kb}

