Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Configure Field Encryption modules

Learn how to configure Field Encryption modules.

Before you begin

Role required: sn_kmf.admin or sn_kmf.cryptographic_manager

Procedure

  1. Navigate to All > System Security > Field Encryption > Field Encryption Experience.

  2. Select the module you want to configure.

    To create a new module, see Create cryptographic module for Field Encryption.

  3. In the Module Overview fill out the fields as shown here.

FieldValue
Module nameDisplays the module name prepended with the application scope name to avoid conflict with other scoped applications. For example, if you create a module with the name my\_crypto\_module in the global application scope, the name is saved as global.my\_crypto\_module. Choose a name for the module. This name is referenced when running scripts.
Module lifecycle stateThe term “lifecycle” refers to the creation, use, and deactivation of a cryptographic module. Set this value to Draft initially during configuration. Set it to Published for active use.Note: The default template is automatically set to Published.
Application scopeThe application scope for this module. This field is automatically populated with the current application.
Cryptographic purposeDisplays the purpose of the selected algorithm, key, length, and mode. For Field Encryption, this field is read only and has a value of Symmetric Data Encryption/Data.
Crypto Spec TemplateAutomatically populated with Default template. This template is used to create the cryptographic module that contains mappings of many cryptographic purposes to cryptographic specifications and recommended algorithms.
AlgorithmDefines which encryption scheme will be used to encrypt fields associated with the module.
  1. Select Submit.

What to do next

Configure the purpose, algorithm, key length, mode, and origin of your encryption key in Cryptographic specifications for Field Encryption.

Parent Topic:Configuring Field Encryption