Search: "cmk"
Impact of CMK states on API call - Key Management Service Documentation
In Key Management Service (KMS), each Customer Master Key (CMK) has three states: Enabled, Disabled, and PendingDeletion. If the key is an external key (when its Origin is EXTERNAL in KeyMetaData), it may also be in the PendingImport state. A new CMK is ...
CreateKey - Key Management Service Documentation
DescriptionCreates a CMK in the caller’s account. You can use a CMK to encrypt small amounts of data (6 KB or less The source of the CMK’s key material. We recommend that you are fully aware of how to ImportKeyMaterial before ...
DescribeKey - Key Management Service Documentation
DescriptionReturns detailed information about the specified CMK. Request parameters Name Type Required Description KeyId String Yes Globally unique identifier of the CMK ...
Import key material - Key Management Service Documentation
Customer master key (CMK) description and classificationCustomer master keys (CMKs) are the basic resources of KMS. CMKs are case, KMS does not generate key material for the CMK you create and you can import your own key material to the CMK. You can use ...
Alias Instructions - Key Management Service Documentation
An alias is an optional identifier for a Customer Master Key (CMK). An alias must be unique to an Alibaba Cloud account and region. You can use the same alias for the same account in different regions. Each alias can point to only one CMK in the same ...
Scenarios - Key Management Service Documentation
Common usage of KMS: Use CMK to encrypt and decrypt dataUse envelope encryption to encrypt and decrypt data locally Legend Symbol Meaning Symbol Meaning CMK Ciphertext key Plaintext certificate Plaintext file Ciphertext certificate ...
ECS disk encryption - Elastic Compute Service Documentation
, Alibaba Cloud automatically creates a Customer Master Key (CMK) in the KMS region, exclusively for ECS. The CMK cannot be deleted. You can query the CMK in the KMS console. Key management for ECS disk encryption ECS disk encryption ...
ImportKeyMaterial - Key Management Service Documentation
DescriptionImports key material to an existing KMS CMK that was created without key material. The Origin of the CMK to which you import key material must be EXTERNAL. To create a CMK with no key material, call CreateKey and set the value of its Origin ...
Server-side encryption - Object Storage Service Documentation
data in OSS: Server-side encryption options Fully managed by OSS CMK managed by KMS Server-side file, you can use a specified CMK ID or the CMK fully managed by KMS to encrypt and decrypt a large amount of data. You do not ...
Key Management Service (KMS): Manage Encryption Keys - Alibaba Cloud Product
Key (CMK) in KMS and deploy only the encrypted data key, and users can call KMS to decrypt the data key only when they need to Key (CMK) to encrypt and decrypt data. This scenario applies to encryption and decryption of a small amount of data (less than 4KB ...