KMS Flashcards

1
Q

What is KMS?

A

AWS Key Management Service (AWS KMS) is a managed service that makes it easy for you to create and control the cryptographic keys that are used to protect your data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is used to protect and validate your KMS keys?

A

AWS KMS uses hardware security modules (HSM) to protect and validate your AWS KMS keys under the FIPS 140-2 Cryptographic Module Validation Program.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the primary resource in AWS KMS?

A

AWS KMS Keys (KMS keys) are the primary resource in AWS KMS.

You can use KMS key to encrypt, decrypt, and re-encrypt data. It can also generate data keys that you can use outside of AWS KMS.

Typically, you’ll use symmetric encryption KMS keys, but you can create and use asymmetric KMS keys for encryption or signing, and create and use HMAC KMS keys to generate and verify HMAC tags.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly