class
Amazonite::Kms::GenerateRandomRequest
- Amazonite::Kms::GenerateRandomRequest
- Reference
- Object
Included Modules
- JSON::Serializable
Defined in:
kms/generate_random_request.crConstructors
- .new(pull : JSON::PullParser)
- .new(number_of_bytes : Int32 | Nil = nil, custom_key_store_id : String | Nil = nil, recipient : RecipientInfo | Nil = nil)
Instance Method Summary
-
#==(other : self)
Returns
trueif this reference is the same as other. -
#custom_key_store_id : String | Nil
Generates the random byte string in the CloudHSM cluster that is associated with the specified CloudHSM key store.
-
#custom_key_store_id=(custom_key_store_id : String | Nil)
Generates the random byte string in the CloudHSM cluster that is associated with the specified CloudHSM key store.
-
#hash(hasher)
See
Object#hash(hasher) -
#number_of_bytes : Int32 | Nil
The length of the random byte string.
-
#number_of_bytes=(number_of_bytes : Int32 | Nil)
The length of the random byte string.
-
#recipient : RecipientInfo | Nil
A signed attestation document from an Amazon Web Services Nitro enclave or NitroTPM, and the encryption algorithm to use with the public key in the attestation document.
-
#recipient=(recipient : RecipientInfo | Nil)
A signed attestation document from an Amazon Web Services Nitro enclave or NitroTPM, and the encryption algorithm to use with the public key in the attestation document.
- #validate! : Nil
Constructor Detail
Instance Method Detail
Returns true if this reference is the same as other. Invokes same?.
Generates the random byte string in the CloudHSM cluster that is associated with the specified CloudHSM key store. To find the ID of a custom key store, use the DescribeCustomKeyStores operation.
External key store IDs are not valid for this parameter. If you specify the ID of an external
key store, GenerateRandom throws an UnsupportedOperationException.
Generates the random byte string in the CloudHSM cluster that is associated with the specified CloudHSM key store. To find the ID of a custom key store, use the DescribeCustomKeyStores operation.
External key store IDs are not valid for this parameter. If you specify the ID of an external
key store, GenerateRandom throws an UnsupportedOperationException.
The length of the random byte string. This parameter is required.
The length of the random byte string. This parameter is required.
A signed attestation
document
from an Amazon Web Services Nitro enclave or NitroTPM, and the encryption algorithm to use with
the public key in the attestation document. The only valid encryption algorithm is
RSAES_OAEP_SHA_256.
This parameter supports the Amazon Web Services Nitro Enclaves SDK or any Amazon Web Services SDK for Amazon Web Services Nitro Enclaves. It supports any Amazon Web Services SDK for Amazon Web Services NitroTPM.
When you use this parameter, instead of returning plaintext bytes, KMS encrypts the plaintext
bytes under the public key in the attestation document, and returns the resulting ciphertext in
the CiphertextForRecipient field in the response. This ciphertext can be decrypted only with
the private key in the attested environment. The Plaintext field in the response is null or
empty.
For information about the interaction between KMS and Amazon Web Services Nitro Enclaves or Amazon Web Services NitroTPM, see Cryptographic attestation support in KMS in the Key Management Service Developer Guide.
A signed attestation
document
from an Amazon Web Services Nitro enclave or NitroTPM, and the encryption algorithm to use with
the public key in the attestation document. The only valid encryption algorithm is
RSAES_OAEP_SHA_256.
This parameter supports the Amazon Web Services Nitro Enclaves SDK or any Amazon Web Services SDK for Amazon Web Services Nitro Enclaves. It supports any Amazon Web Services SDK for Amazon Web Services NitroTPM.
When you use this parameter, instead of returning plaintext bytes, KMS encrypts the plaintext
bytes under the public key in the attestation document, and returns the resulting ciphertext in
the CiphertextForRecipient field in the response. This ciphertext can be decrypted only with
the private key in the attested environment. The Plaintext field in the response is null or
empty.
For information about the interaction between KMS and Amazon Web Services Nitro Enclaves or Amazon Web Services NitroTPM, see Cryptographic attestation support in KMS in the Key Management Service Developer Guide.