Combined Encryption Key Management release notes for upgrades from Xanadu to Yokohama
Summarize
Summary of Combined Encryption Key Management Release Notes for Upgrades from Xanadu to Yokohama
This consolidated release notes document provides ServiceNow customers with essential information for upgrading Encryption Key Management (EKM) from the Xanadu release family to Yokohama. It highlights new features, changes, deprecations, and important pre- and post-upgrade tasks, helping you understand how to effectively manage encryption key functionality and security enhancements through this transition.
Show less
Important Upgrade Considerations
- The GlideEncrypter API, which uses the three-key Triple Data Encryption Standard (3DES), is deprecated per NIST guidelines post-2023.
- Yokohama blocks new instances from using GlideEncrypter/3DES; upgrades retain 3DES support but allow disabling it via a system property.
- All base system scripts have migrated to alternative encryption methods in Yokohama, supporting future-proof security compliance.
New Features
- Code Signing Enhancements (Xanadu): New plugin enables roles and administration features for code signing, including signature migration jobs.
- Field Encryption Rebranding (Yokohama): Column Level Encryption is renamed Field Encryption Starter (FES), and Column Level Encryption Enterprise is now Field Encryption Enterprise (FEE).
- Access Observer (Yokohama): Introduced to provide visibility into who accesses data and how, aiding compliance and troubleshooting.
- Improved Migration Workflow (Yokohama): Seamless migration process from Edge Encryption to Field Encryption ensures data is not left unencrypted during transition.
Changes to Existing Features
- Code Signing Security (Xanadu): Script and attachment signing is restricted to trusted non-production instances or standalone tools to enhance Root of Trust security; notarization remains allowed in production.
- Code Signing Tool Improvements: Administrators can now manage keystores and signature records externally, with a streamlined activation UI.
- Edge Encryption Updates: New 'Download All' button enables downloading multiple encrypted attachments as a zip file; jRobin dashboards migrated to NEXT Experience View for improved troubleshooting.
- Column Level Encryption Enhancements: Support for full UTF-8 strings including emojis; administrators can install Enterprise version post-purchase without extra technical support; improved logging aids in system analysis and troubleshooting.
- Yokohama: No changes reported in this area.
Removals and Deprecations
No features or functionality were removed or deprecated in either Xanadu or Yokohama releases.
Activation Information
- Xanadu: Platform Encryption subscription bundle includes Column Level Encryption Enterprise, Cloud Encryption, and Database Encryption; Enterprise plugin activated via
com.glide.now.platform.encryption. - Yokohama: Platform Encryption subscription bundle now includes Field Encryption Enterprise and Cloud Encryption; Enterprise plugin activation remains the same.
Additional Notes
- No updates for additional requirements, browser requirements, accessibility, or localization details were made between Xanadu and Yokohama.
- Highlighted improvements include streamlined Code Signing activation UI, enhanced Column Level Encryption APIs and logging, and the introduction of Access Observer for better encryption management visibility.
Consolidated page of all release notes for Encryption Key Management from Xanadu to Yokohama.
How to use this page
To help you prepare for your upgrade, we have combined the cross-family Encryption Key Management release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Xanadu to Yokohama.
Important information for upgrading Encryption Key Management to Yokohama
Before you upgrade to Yokohama, review these pre- and post-upgrade tasks and complete the tasks as needed.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
|
New features
Between your current release family and Yokohama, new features were introduced for Encryption Key Management.
| Release | Release notes |
|---|---|
Xanadu |
|
Yokohama |
|
Changes
Between your current release family and Yokohama, some changes were made to existing Encryption Key Management features.
| Release | Release notes |
|---|---|
Xanadu |
|
Yokohama |
No updates for this release. |
Removed
Between your current release family and Yokohama, some Encryption Key Management features or functionality were removed.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Deprecations
Between your current release family and Yokohama, some Encryption Key Management features or functionality were deprecated.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Activation information
Review information on how to activate Encryption Key Management.
| Release | Release notes |
|---|---|
Xanadu |
The Platform Encryption subscription bundle is a group commercial entitlement that includes Column Level Encryption Enterprise, Cloud Encryption, and Database Encryption. Column Level Encryption Enterprise is the unlimited license of Column Level Encryption. The Enterprise plugin is available with the activation of the com.glide.now.platform.encryption plugin. For details, see Encryption and Key Management subscription bundle. |
Yokohama |
The Platform Encryption subscription bundle is a group commercial entitlement that includes Field Encryption Enterprise and Cloud Encryption. Field Encryption Enterprise is the unlimited license of Field Encryption. The Enterprise plugin is available with the activation of the com.glide.now.platform.encryption plugin. For details, see Encryption and Key Management subscription bundle. |
Additional requirements
If any additional requirements were introduced or changed for Encryption Key Management we have noted them here.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Browser requirements
If any specific browser requirements were introduced or changed for Encryption Key Management we have noted them here.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Accessibility information
Review details on accessibility information for Encryption Key Management, such as specific requirements or compliance levels.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Localization information
If there are specific localization considerations for Encryption Key Management we have noted them here.
| Release | Release notes |
|---|---|
Xanadu |
No updates for this release. |
Yokohama |
No updates for this release. |
Highlight information
If there are specific highlight considerations for Encryption Key Management we have noted them here.
| Release | Release notes |
|---|---|
Xanadu |
See Key Management Framework for more information. |
Yokohama |
See Key Management Framework for more information. |