Updated on 2026-07-28 GMT+08:00

Key Policies

A key policy defines the conditions under which specific access points or security zones can decrypt a DEK, ensuring the key is not misused.

Creating a Key Policy

  1. Log in to the DSC console.
  2. In the navigation pane on the left, choose Data Security Zones > Trusted Key Space.
  3. In the navigation pane of Trusted Key Space, choose Key Policies.
  4. Click Create Policy. On the Create Policy page, configure parameters.

    Figure 1 Creating a policy

    Table 1 Parameters for creating a policy

    Parameter

    Description

    Policy Name

    Custom policy name.

    Configuration Mode

    Options:

    • Visual editor
    • JSON

    Policy Content

    This parameter is mandatory when Configuration Mode is set to Visual editor.

    • Access Mode: Select an access point or security zone.
    • Effective Time: Click to select the start date and end date.

    Description (Optional)

    Remarks.

  5. Click OK.

Related Operations

  • Editing a key policy: In the Operation of a key policy, click Edit. Edit the information and click OK.
  • Deleting a key policy: In the Operation column of a key policy, click Delete. In the Delete Policy dialog box, enter DELETE and click OK.