Loading
Prepare for Email to Become the Default Login ExperienceRead More
Intermittent freezing when using using certain browser versionsRead More
Set Up and Maintain Your Salesforce Organization
Check the Connection to Your EKM Key

Check the Connection to Your EKM Key

You can check the connection between Salesforce and your external key management service. This information can help you troubleshoot problems when you configure your key policy.

Required Editions

Available in both Lightning Experience and Salesforce Classic (not available in all orgs).
Available in: Enterprise, Performance, Unlimited, and Developer Editions. Requires purchasing Salesforce Shield or Shield Platform Encryption, and the External Key Management Service. Data 360 customers must also have the Platform Encryption for Consumption license.
User Permissions Needed
To generate, destroy, export, import, upload, and configure tenant secrets and customer-supplied key material: Manage Encryption Keys

Before you can check a key connection, you must set up a key policy.

Check the connection anytime you want to verify an accessible connection.

  1. From Setup, in the Quick Find box, enter Platform Encryption, and then select Key Management.
  2. In the External Key Inventory table, click Details.
  3. In the KMS Connection Status section, click Check.
    You see details about your connection, such as whether the connection is successful and the unique key identifier used. If the connection is unsuccessful, you see an error that explains what went wrong. Use the information in this error to correct the issue.
  4. If a key is listed as Unavailable, click Retry.
    This calls out to AWS to check whether the key works now and, if so, update the state.
 
Loading
Salesforce Help | Article