You create and configure tokenization policies, which are used to tokenize or detokenize data.

Vault administrators and vault users can create tokenization policies. Only vault administrators can edit and delete tokenization policies. Users are not able to edit or delete tokenization policies.

Note: You must create a key before you can create a tokenization policy. See Creating keys.

To configure a tokenization policy

  1. Log into the Cryptographic Security Platform Vault for Cryptographic APIs webGUI.

  2. From the Home tab, select Manage > Policies.

  3. On the Tokenization Policies page, ensure the Tokenization tab is selected.

  4. Click the Create icon to create a tokenization policy.

  5. On the Create Tokenization Policy dialog, complete the following:

    Field

    Description

    Policy Name

    Enter the name for the policy.

    Description

    Optional. Enter the description for the policy.

    Key

    Select a key from the drop-down list. For Tokenization policies, only keys of type AES are supported.

    Charset

    Select the required character set for the policy (the format of the input data). Examples include: 

    • Alphanumeric—for numbers and alphabetical characters.

    • Numeric—for numbers only

    • Numeric-Luhn—used for credit cards and ID numbers.

    • Chinese—for Chinese text.

    • Japanese—for Japanese text.

    • Korean—for Korean text.

    • Thai—For Thai text.

    • TWID—the Taiwan National ID format, in the form A123456789.

    • Vietnamese—for Vietnamese text.

    Preserved Prefix

    Optional. To preserve any prefix characters in the token, enter the number of characters to preserve. For example, select 2 to preserve the first two characters.

    Preserved Suffix

    Optional. To preserve any suffix characters in the token, enter the number of characters to preserve. For example, select 2 to preserve the last two characters.

  6. Click Create.