← Back to plugin index

AWS KMS Password Decryption

Description
Decryption service accepting passwords encrypted with AWS KMS key material. On AWS KMS two keys are required:
  • Asymmetric key to encrypt the randomly generated key which encrypts a users password on client side. Configure this ARN in "RSA Asymmetric Key ARN".
  • Symmetric key to encrypt the password hashes that are stored on Airlock IAM's database. Configure this ARN in "Symmetric Key ARN".
Type name
AwsKmsPasswordDecryption
Class
com.airlock.iam.keymanagementservice.application.configuration.password.AwsKmsPasswordDecryptionConfig
May be used by
License-Tags
AWSKMS
Properties
AWS KMS Settings (awsKmsSettings)
Description
Specifies the AWS account and key material for cryptographic operations.
Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)

type: AwsKmsPasswordDecryption
id: AwsKmsPasswordDecryption-xxxxxx
displayName: 
comment: 
properties:
  awsKmsSettings: