Difference between revisions of "KMS PATH"

From wikieduonline
Jump to navigation Jump to search
 
(2 intermediate revisions by one other user not shown)
Line 1: Line 1:
  
 
+
0) Obtain <code>[[KMS_PATH]]</code>
 
  [[gcloud kms keys list --location global --keyring sops]]
 
  [[gcloud kms keys list --location global --keyring sops]]
 
  NAME                                                                                          PURPOSE          ALGORITHM                   
 
  NAME                                                                                          PURPOSE          ALGORITHM                   
Line 10: Line 10:
 
  projects/your-project/locations/global/keyRings/sops/cryptoKeys/sops-key                      ENCRYPT_DECRYPT  GOOGLE_SYMMETRIC_ENCRYPTION   
 
  projects/your-project/locations/global/keyRings/sops/cryptoKeys/sops-key                      ENCRYPT_DECRYPT  GOOGLE_SYMMETRIC_ENCRYPTION   
 
  SOFTWARE                  1          DESTROYED  
 
  SOFTWARE                  1          DESTROYED  
 +
 +
1) [[Encrypt]] using <code>KMS_PATH</code>
 +
* <code>[[sops --encrypt --gcp-kms]] $[[KMS_PATH]] secret.yaml > secret.yaml[[.sops]]</code>
  
  
  [[sops --encrypt --gcp-kms]] $[[KMS_PATH]] secret.yaml > secret.enc.yaml
+
== Related ==
 +
* <code>[[SOPS_GCP_KMS]] environment variable</code>
  
 
== See also ==
 
== See also ==

Latest revision as of 07:30, 24 November 2022

0) Obtain KMS_PATH

gcloud kms keys list --location global --keyring sops
NAME                                                                                           PURPOSE          ALGORITHM                   
PROTECTION_LEVEL  LABELS  PRIMARY_ID  PRIMARY_STATE
projects/your-project/locations/global/keyRings/sops/cryptoKeys/sops-encryption-key            ENCRYPT_DECRYPT  GOOGLE_SYMMETRIC_ENCRYPTION  HSM                       
1           ENABLED
projects/your-project/locations/global/keyRings/sops/cryptoKeys/sops-encryption-key-data-lake  ENCRYPT_DECRYPT  GOOGLE_SYMMETRIC_ENCRYPTION  HSM                       
1           ENABLED
projects/your-project/locations/global/keyRings/sops/cryptoKeys/sops-key                       ENCRYPT_DECRYPT  GOOGLE_SYMMETRIC_ENCRYPTION  
SOFTWARE                  1           DESTROYED 

1) Encrypt using KMS_PATH


Related[edit]

See also[edit]

Advertising: