---
sourceDocument: Australia ServiceNow AI Platform Capabilities
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/servicenow-platform

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia ServiceNow AI Platform Capabilities

ft:clusterId :

    - platcap

bundleId :

    - platcap

workflow :

    - Platform


---

# Domain separation

# Hermes Messaging Service domain separation {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 Minuten Lesedauer

Domain separation is supported for the Hermes Messaging Service. Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can control several aspects of this separation, including which users can see and access data.

## Support level: Basic {#hermes-messaging-service-domain-separation__section_ucs_kzg_jzb}

{#hermes-messaging-service-domain-separation__domain-sep-supported}  
* Business logic: Ensure that data goes into the proper domain for the application's service provider use cases.
* The application supports domain separation at run time. The domain separation includes separation from the user interface, cache keys, reporting, rollups, and aggregations.
* The owner of the instance must set up the application to function across multiple tenants.
{#hermes-messaging-service-domain-separation__ul_yhr_g2j_xkb}

Sample use case: When a service provider (SP) uses chat to respond to a tenant-customer's
message, the customer must be able to see the SP's response.{#hermes-messaging-service-domain-separation__p_lsc_nfg_h1c}

For more information on support levels, see [Application support for domain
separation](https://www.servicenow.com/docs/access?context=domain-separated-apps&version=australia&pubname=australia-platform-security&ft:locale=en-US).{#hermes-messaging-service-domain-separation__p_msc_nfg_h1c}

## Overview {#hermes-messaging-service-domain-separation__section_tsm_mzg_jzb}

On a domain-separated instance, you can use namespaces to configure which domains can access specific topics in the Hermes Kafka cluster. You assign topics to ServiceNow domains using the topic record's namespace.

## How domain separation works with the Hermes Messaging Service {#hermes-messaging-service-domain-separation__section_usm_mzg_jzb}

On a domain-separated instance, a user with the kafka_namespace_admin role can assign namespaces to specific ServiceNow domains. When the Kafka namespace admin assigns a namespace to a particular domain, all the topics created in that namespace will have the same domain. Users can only see and interact with the
topics and namespaces they have access to, based on domain visibility and access control lists (ACLs). Topics created with the Default Namespace are created in the global domain.

Both the Kafka Topics \[sys_kafka_topic\] table and the Kafka Namespaces \[sys_kafka_namespace\] table are domain-separated tables. Domain separation rules filter which records are available in each domain. In addition to being
domain-separated, these tables can also be protected with ACLs, just like any other table.

All domain support features require the Domain Support - Domain Extensions Installer (com.glide.domain.msp_extensions.installer) plugin.
**Zugehörige Verweise**   

* [Hermes Messaging Service components](https://servicenow-prod.fluidtopics.net/EzXzyCgBqWjagCEq27Be7A "The Hermes Messaging Service architecture is built on the following components.")
* [Hermes Messaging Service security model](https://servicenow-prod.fluidtopics.net/1K9uMyfqAqOZhGFdkIWg8g "The Hermes Messaging Service security model relies on the following capabilities.")
* [Hermes Messaging Service system properties](https://servicenow-prod.fluidtopics.net/PETSHluNdPulNs0zObO38A "These system properties control the behavior of the Hermes Messaging Service.")
* [Hermes Messaging Service roles](https://servicenow-prod.fluidtopics.net/350BDaFAHixFOxVDiwLDzw#hermes-messaging-service-roles "Hermes Messaging Service is installed with these roles.")  
**Zugehörige Informationen**   

* [Domain separation for service providers](https://www.servicenow.com/docs/access?context=domain-sep-landing-page&version=australia&pubname=australia-platform-security&ft:locale=en-US)

