Skip to main content

KmsKey

Resource KmsKey in pulumi-infisical.
2 min read

Resource KmsKey in pulumi-infisical.

Pulumi type: infisical:index/kmsKey:KmsKey.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
descriptionstringnoThe description of the KMS key. Maximum 500 characters.
encryptionAlgorithmstringnoThe encryption algorithm for the key. Options: aes-256-gcm, aes-128-gcm, RSA_4096, ECC_NIST_P256. Defaults to 'aes-256-gcm'.
isDisabledbooleannoWhether the key is disabled. Defaults to false.
isExportablebooleannoWhether the raw key material can be exported. Defaults to true. Changing this value requires replacing the key.
keyUsagestringnoThe usage of the key. Options: encrypt-decrypt, sign-verify. Defaults to 'encrypt-decrypt'.
namestringnoThe name of the KMS key. Must be 1-32 characters.
projectIdstringyesThe ID of the project where the KMS key will be created.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
createdAtstringyesThe creation timestamp of the key.
descriptionstringnoThe description of the KMS key. Maximum 500 characters.
encryptionAlgorithmstringnoThe encryption algorithm for the key. Options: aes-256-gcm, aes-128-gcm, RSA_4096, ECC_NIST_P256. Defaults to 'aes-256-gcm'.
isDisabledbooleannoWhether the key is disabled. Defaults to false.
isExportablebooleannoWhether the raw key material can be exported. Defaults to true. Changing this value requires replacing the key.
keyUsagestringnoThe usage of the key. Options: encrypt-decrypt, sign-verify. Defaults to 'encrypt-decrypt'.
namestringnoThe name of the KMS key. Must be 1-32 characters.
orgIdstringyesThe ID of the organization.
projectIdstringnoThe ID of the project where the KMS key will be created.
updatedAtstringyesThe last update timestamp of the key.
versionnumberyesThe version of the key.