-
Setup and onboarding
- Explore Adobe Admin Console
- Sign-in and access
-
Licensing
- Licensing overview
- Licensing types
-
Identity and SSO
- Set up identity
- Integrate with Microsoft Entra
- Integrate with Google Sync
- Integrate with other SSO providers
- Troubleshoot
-
Directories, domains, and access
-
Directories and domains
- Create a directory for SAML identity providers
- Verify domain ownership
- Set up domains for directory authentication
- Move domains across directories
- Encrypted and trusted directory domain transfers
- Move directories between Admin Consoles
- Delete directories and domains
- Automatic account creation overview
- Enable automatic account creation
- Automatic federated account creation FAQ
- Domain enforcement
- Directory trusting
-
Directories and domains
-
Settings
- Asset settings
- Manage encryption
-
User management
- Understand user management
- Manage users and groups
- Manage admins
- Manage user roles
- Migrate users
-
Products and entitlements
- Manage products
- Manage product profiles
- Special programs plans
- Manage entitlements
- Manage automatic assignment
- Manage product access
- Manage self-service policies
- Manage app integrations
- Frame.io integration
- Manage product permissions
- Manage storage and assets
-
Manage services
- Configure services
- Adobe Stock
- Custom fonts
- Adobe Asset Link
-
Deploy apps and updates
- Prepare for deployment
- Manage pre-generated packages
- Create packages
- Customize end-user experience
- Deploy packages
- Use third-party deployment tools
-
Manage Shared Device Licensing (SDL)
- Shared Device Licensing overview
- Deploy Shared Device Licensing
- Manage SDL profiles and user access
- Activate shared device licenses
- Use the Shared Device Licensing toolkit
- Recover shared device licenses
- Shared Device Licensing identity FAQ
- Shared Device Licensing deployment FAQ
- Shared Device Licensing access FAQ
- Known issues in Shared Device Licensing
- Adobe Update Server Setup Tool (AUSST)
- Adobe Remote Update Manager (RUM)
- Troubleshoot
- Contracts and renewals
- Reports and logs
-
Get started with Global Admin Console
- Get started
- Manage your organization
- Reports audit
-
Get help
- Support options
-
General troubleshooting
- Microsoft Purview Information Protection support in Acrobat
- Use the Creative Cloud Cleaner tool to fix installation issues
- Fix app launch errors on Shared Device Licensing machines
- Technical support boundaries for virtualized or server-based environments
- Resolve trial and license expired errors
- Migrating to OAuth Server-to-Server Credentials
- Manage device authentication for Creative Cloud and Acrobat Pro
Dedicated encryption keys for data security
Learn how dedicated encryption keys enhance data security and provide organization-level control over stored content.
Adobe encrypts all Creative Cloud data by default. Dedicated encryption keys in the Admin Console add an extra layer of security and give admins control over content access. Organizations can immediately revoke access to encrypted content during security incidents.
When you enable a dedicated encryption key, Adobe generates a unique encryption key that encrypts all user content across Creative Cloud storage and desktop and mobile apps.
How dedicated encryption keys work
Adobe encrypts all stored content using industry-standard encryption methods. With dedicated encryption keys, your organization receives a unique key rather than using Adobe's shared encryption system. The dedicated key encrypts content for all users in your organization across the Creative Cloud website, desktop app, and mobile app.
Security control and revocation
Dedicated encryption keys let admins instantly revoke or restore access to encrypted content through the Admin Console. This provides flexible control during security incidents or organizational changes.
Encryption scope and limitations
Once you enable a dedicated encryption key, you cannot revert to using standard encryption keys. This change is permanent because dedicated encryption fundamentally changes your organization's security architecture.
Content not encrypted by dedicated keys
Certain data types remain unencrypted to preserve essential functionality:
- Metadata, including file names, collection names, font usage, MIME types, and other attributes
- Lightroom photos stored in Lightroom-specific storage
- Colors stored by the Adobe Color service
- Data managed by Behance and Adobe Fonts services
- Data stored in Experience Cloud
- Saved application preferences
- Account holder information, such as name, email, licenses, and account details
- Adobe ID user data
This selective encryption preserves browsing and search functionality while maintaining the security of your files.
Plan and storage availability
Dedicated encryption keys are available only with shared services plans that include storage and services. Contact your Adobe representative to upgrade your plan. Before implementing the feature, review the Adobe Creative Cloud for enterprise security overview or Adobe Document Cloud security documentation to understand the complete security model.
Storage availability itself depends on your organization's agreement with Adobe. Dedicated encryption applies only to content stored within Adobe's infrastructure as part of your contracted services.