Skip to playerSkip to main content
  • 7 weeks ago
Transcript
00:00hello everyone today we are going to talk about AWS key management service
00:06it's a managed service that makes it easy for you to create and control encrypted keys used
00:12to protect your data across a wide range of AWS services in your application it provides a secure
00:21and centralized way to manage the lifecycle and permission of your cryptographic keys which are
00:28often referred which are often referred to as KMS keys key featured and benefits of KMS is its
00:38security and compliance feature KMS keys are protected by hardware security models that are
00:45validated under FIPS 142 program the key never the keys never leave AWS KMS encrypted
00:58unencrypted it's a centralized key management system which gives you a single point of control
01:04of for managing all your encryption keys used across your AWS workloads and it's deeply integrated with
01:15almost all AWS services like S3 EBS RDS making it easy to encrypt data stored in those services and
01:22control who can decrypt it access control you can define access permission using key policies and IAM
01:31policies to control which users and services can use a key for cryptographic operations it's an AWS
01:41KMS is integrated with AWS cloud trail which logs every API call made to the service gives you an
01:50auditable record of who used which key when and on which resource so so there are different key types it
01:58supports both symmetric single key for encryption and description and asymmetric like public key
02:04private public and private key pairing which in KMS keys AWS KMS simplifies the production of sensitive data but
02:15by taking one on the by taking on the responsibilities of managing the high level root keys which are then
02:26used in a process called envelope encryption to protect the actual data so in brief like you can generate
02:36n number of keys and to and assign it to different different AWS services and manage who can access those
02:42keys to access different services around your AWS environment so if you have any question please ask but
02:49AWS KMS is one of the most great service to manage and control your AWS environment thank you
Be the first to comment
Add your comment