AWS KMS Password Decryption
Description
Decryption service accepting passwords encrypted with AWS KMS key material. On AWS KMS two keys are required:
- Asymmetric key to encrypt the randomly generated key which encrypts a users password on client side. Configure this ARN in "RSA Asymmetric Key ARN".
- Symmetric key to encrypt the password hashes that are stored on Airlock IAM's database. Configure this ARN in "Symmetric Key ARN".
May be used by
Properties
AWS KMS Settings (
awsKmsSettings) Description
Specifies the AWS account and key material for cryptographic operations.
Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)
type: AwsKmsPasswordDecryption
id: AwsKmsPasswordDecryption-xxxxxx
displayName:
comment:
properties:
awsKmsSettings: