Loading
Prepare for Email to Become the Default Login ExperienceRead More
Intermittent freezing when using using certain browser versionsRead More
Set Up and Maintain Your Salesforce Organization
Onboard to Shield Platform Encryption

Onboard to Shield Platform Encryption

There are several situations that can affect onboarding to the different Shield Platform Encryption features. These depend on the encryption policies you have adopted, and whether you already are using one or more Shield Platform Encryption features.

Required Editions

Available in both Salesforce Classic (not available in all orgs) and Lightning Experience.
Available in: Enterprise, Performance, and Unlimited Editions with the Salesforce Shield or Shield Platform Encryption licenses.
Available for free in Developer Edition.
  • Onboard Database Encryption
    Database Encryption will give you sufficient encryption coverage for your org's data in Salesforce's transactional database.
  • Onboard Field-Level Encryption
    FLE enables you to apply fine-grained encryption to standard and custom fields. You can use FLE with or without Database Encryption enabled.
  • Onboard Search Index Encryption
    Search is a feature integrated into your Salesforce org. Search index encryption supplies encryption keys specifically for your search indexes, protecting any sensitive information within them. You can turn it on and off at any time. You can also rotate the root key, data encryption key (DEK), or tenant secret.
  • Onboard BYOK
    Switch from Salesforce-generated keys to Bring Your Own Key (BYOK) for Shield Platform Encryption.
  • Onboard External Key Management
    With External Key Management (EKM), you encrypt data in Salesforce with key material housed in an external key management service (KMS). If you currently use a Salesforce-generated root key or DEK, you can switch to EKM for supported data stores and categories. Shield EKM supports field-level encryption and encryption for data in Data 360, the event bus, and search indexes.
 
Loading
Salesforce Help | Article