You create and configure tokenization policies, which are used to tokenize or detokenize data.
Vault administrators and vault users can create tokenization policies. Only vault administrators can edit and delete tokenization policies. Users are not able to edit or delete tokenization policies.
Note: You must create a key before you can create a tokenization policy. See Creating keys.
To configure a tokenization policy
Log into the Cryptographic Security Platform Vault for Cryptographic APIs webGUI.
From the Home tab, select Manage > Policies.
On the Tokenization Policies page, ensure the Tokenization tab is selected.
Click the Create icon to create a tokenization policy.
On the Create Tokenization Policy dialog, complete the following:
Field
Description
Policy Name
Enter the name for the policy.
Description
Optional. Enter the description for the policy.
Key
Select a key from the drop-down list. For Tokenization policies, only keys of type AES are supported.
Charset
Select the required character set for the policy (the format of the input data). Examples include:
Alphanumeric—for numbers and alphabetical characters.
Numeric—for numbers only
Numeric-Luhn—used for credit cards and ID numbers.
Chinese—for Chinese text.
Japanese—for Japanese text.
Korean—for Korean text.
Thai—For Thai text.
TWID—the Taiwan National ID format, in the form A123456789.
Vietnamese—for Vietnamese text.
Preserved Prefix
Optional. To preserve any prefix characters in the token, enter the number of characters to preserve. For example, select 2 to preserve the first two characters.
Preserved Suffix
Optional. To preserve any suffix characters in the token, enter the number of characters to preserve. For example, select 2 to preserve the last two characters.
Click Create.