Skip to content

All Content tagged with AWS Key Management Service

AWS Key Management Service (KMS) makes it easy for you to create and manage cryptographic keys and control their use across a wide range of AWS services and in your applications.

Content language: English

Filter content
Select tags to filter
Sort by
Sort by most recent
435 results
For sensitive caller inputs (PAN, CVV, authentication codes), post-call redaction is not enough PCI DSS v4.0 requires CVV is never stored after authorization and PAN only stored encrypted. This articl...
Connect encrypts customer content at rest by default with a service-managed KMS key, but customers in regulated industries (PCI DSS v4.0, GDPR, HIPAA) typically need full key control — independent rot...
I'm trying to import an external AES-256 KEK into AWS Payment Cryptography using DiffieHellmanTr31KeyBlock in ap-southeast-1. Every attempt returns: ValidationException: KeyBlock data in the importe...
1
answers
0
votes
29
views
asked 12 days ago
Running Spark on EMR with KMS-encrypted S3 data? Every object read triggers a kms:Decrypt API call — and at scale, those costs add up fast. If your compliance requirements prevent switching to S3 Buck...
This article shows you how to create a fallback mechanism to add resiliency to authentication in the AWS Management Console.
I would like to use AWS KMS for code signing. Additionally, I would like to publish transparency logs as an assurance that the signing key has not signed unknown code. However CloudTrail logs don't in...
1
answers
-1
votes
57
views
asked a month ago
We store our passwords for our endpoints in secrets manager. These rotate every 7 days. We are noticing when the password rotates, the CDC then fails. Is there a way to keep DMS updated with secrets ...
3
answers
0
votes
69
views
asked a month ago
AWS
published 2 months ago2 votes231 views
I want to understand how IAM roles and permissions work with AWS Backup, and how to troubleshoot permission-related failures for backup, restore, and copy jobs.
This article provides general guidance on migrating Security, Identity and Compliance resources from one region to another.
![Error Message](/media/postImages/original/IMYD-uXZk1Qyikhujequ0QEA) I’m trying to validate a cross-organization backup copy scenario and would appreciate clarification. **Scenario** * Account A1 in...
1
answers
0
votes
119
views
asked 3 months ago
Hi everyone, I’m designing a system in AWS where I need to manage around 10,000 users, each with a crypto wallet key pair (public + private key) that must be stored securely. What would be the best ...
2
answers
0
votes
96
views
asked 3 months ago
I have an existing Amazon MSK cluster that was created using the AWS managed KMS key for encryption at rest. I now have a requirement to use a customer-managed KMS key (CMK) instead. Questions: Ca...
1
answers
0
votes
68
views
asked 3 months ago
  • 1
  • 2
  • 3
  • 4
  • 5
  • •••
  • 37
  • Page size
    12 / page