Encryption release notes
Summarize
Summary of Encryption Release Notes
The ServiceNow® Encryption Key Management application enhances data protection through encryption, key access control, and compliance with NIST standards. The latest updates in the Australia release, dated March 12, 2026, introduce significant enhancements to Field Encryption and External Key Management Service (EKMS) integration for improved security and management.
Show less
Key Features
- Enhanced Administration Interface: Streamlined management of Field Encryption and Field Encryption Enterprise with improved layouts for configuration, key rotation, and policy updates.
- External Key Management Service (EKMS) Integration: Allows for the storage of encryption keys outside the instance, enabling automated key rotation and revocation while maintaining security protocols.
- UI Improvements: Updated user interface for better access to encryption status, audit details, and overall configuration management.
- Platform Encryption Activation: Requires activation of the com.glide.encryption.externalkms plugin, which necessitates a separate subscription.
Key Outcomes
With these enhancements, ServiceNow customers can expect:
- Improved security through external key management and enhanced visibility into key usage.
- Streamlined administration processes, reducing the time and complexity involved in managing encryption settings.
- Informed decision-making with better access to telemetry and performance metrics.
Note that certain plugins, including Column Level Encryption and Edge Encryption, are planned for deprecation. Customers are advised to transition to Field Encryption options for continued support and functionality.
The ServiceNow® Encryption Key Management application protects your data by using encryption, tightly controlled key access, National Institute of Standards and Technology (NIST) 800-57-based key life-cycle management, and FIPS 140-2-L3 key protection. Encryption Key Management was enhanced and updated in the Australia release.
Encryption highlights for the Australia release
- ManageField Encryption and Field Encryption Enterprise using the redesigned user interface.
- Enhance data security with the newly added External Key Management Service (EKMS) integration, enabling you to store encryption keys outside the instance for enhanced security.
See Encryption for more information.
New in the Australia release
- Manage Field Encryption Enterprise with an enhanced Administration interface
- Configure encryption settings, monitor key usage, and streamline administration for Field Encryption and Field Encryption Enterprise
with the following features:
- Simplify key rotation and policy updates.
- Access encryption status and audit details.
- Navigate improved layouts for faster configuration.
- Integrate External Key Management Service (EKMS) with Encryption Modules
- Configure and manage encryption keys externally through EKMS integration with an enhanced encryption framework, which enables you to:
- Hold encryption keys outside the instance for improved security.
- Perform key rotation and revocation with automated security tasks.
- Manage EKMS configurations and enforce the immutability of critical fields after they're active.
- Simplify rekeying following instance clone and restore operations.
- Monitor key state transitions, encrypted cache, and node-to-node communication.
- Access UI improvements for configuration visibility and error handling.
- Benefit from telemetry and performance-tested operations.
UI changes
- Field Encryption user interface changes
- The new Field Encryption and Field Encryption Enterprise UI includes updates to key rotation and policies, access to encryption status and audit details, and changes to layouts.
Activation information
Platform Encryption is available with activation of the com.glide.encryption.external_kms, which requires a separate subscription. For details, see Encryption and Key Management subscription bundle.
Plugin information
- Plugins planned for deprecation
-
The following plugins are planned for deprecation in a future release:
- Column Level Encryption (com.glide.encryption): Planned for deprecation in the C release. Activate the Field Encryption Starter or Field Encryption Enterprise plugins instead.
- Column Level Encryption Enterprise(com.glide.now.platform.encryption): Planned for deprecation in July 2031. Activate the Field Encryption Starter or Field Encryption Enterprise instead.
- Edge Encryption (com.glide.edgeencryption): Planned for deprecation in December 2028. Use Platform Encryption instead. For more information, see the Edge Encryption End of Renewal [KB2007685] article on the Now Support Knowledge Base.
- Edge Encryption Core (com.glide.edgeencryption.core): Planned for deprecation in December 2028. Use Platform Encryption instead. For more information, see the Edge Encryption End of Renewal [KB2007685] article on the Now Support Knowledge Base.