Skip to content
Release: Australia · Updated: 2026-06-26 · Official documentation · View source

Enable encryption at rest for a Hermes topic

Enable encryption at rest on a Hermes topic to help protect message data stored on broker disks from unauthorized access.

Before you begin

  • The Cloud Encryption plugin must be installed. Because this plugin requires a subscription, contact your ServiceNow® administrator. To verify whether the Cloud Encryption plugin is active, navigate to All > System Plugins, search for ServiceNow® Cloud Encryption, and confirm that the status is active.
  • At least one service that uses Hermes must be activated, for example, Stream Connect.

Role required: hermes_admin

Procedure

  1. Navigate to All > Hermes Messaging Service > Topics.

  2. Select the topic name to open the topic record.

  3. Select Enable Encryption.

    The selected topic is encrypted and the button changes to Disable Encryption.

  4. In the topic record, verify in the Kafka Topic Override Configurations related list that the snc.hermes.encryption.enabled property value is set to true.

Parent Topic:Configuring Hermes Messaging Service

Related topics

Activating the Hermes Messaging Service

Set up a secure connection to the Hermes Messaging Service

Revoke a Hermes certificate

Restricting access to Hermes