Loading
Prepare for Email to Become the Default Login ExperienceRead More
Set Up and Maintain Your Salesforce Organization
Encrypt Event Bus Data

Encrypt Event Bus Data

To enable encryption of change data capture or platform event messages at rest, generate an event bus tenant secret and then enable encryption.

Required Editions

Available in: Enterprise, Performance, Unlimited, and DeveloperEditions. Requires purchasing either Salesforce Shield or the Platform Encryption add-on.
Available in both Salesforce Classic and Lightning Experience.
User Permissions Needed
To view setup: View Setup and Configuration
To manage key material: Manage Encryption Keys

These steps enable encryption for change data capture and platform events.

  1. From Setup, in the Quick Find box, enter Platform Encryption, and then select Key Management.
  2. In the Key Management Table, select Event Bus.
  3. Click Generate Tenant Secret, or to upload a customer-supplied tenant secret, click Bring Your Own Key, and upload your key.
  4. From Setup, in the Quick Find box, enter Encryption Settings, and then select Encryption Settings.
  5. In the Encryption Policy section, turn on Encrypt Change Data Capture Events and Platform Events.
Warning
Warning If you don’t enable Shield Platform Encryption for change data capture events and platform events, events are stored in clear text in the event bus.
 
Loading
Salesforce Help | Article