All the information related to keys and encryption is encapsulated by create encryption key, which allows you to specify the encryption algorithm key size, the key’s default property, and the use of an initialization vector or padding during the encryption process.
The System Security Officer has implicit permission to create encryption keys, and may grant that permission to other users. Only the System Security officer can create keys with the default property.
See “Syntax for create encryption” for more information.