»GCP Cloud KMS (API)
The Key Management secrets engine supports lifecycle management of keys in GCP Cloud KMS
key rings. This is accomplished by
configuring a KMS provider resource with the
gcpckms provider and other provider-specific parameter
The following sections provide API documentation that is specific to GCP Cloud KMS.
»Create/Update KMS Provider
This endpoint creates or updates a KMS provider. If a KMS provider with the given
does not exist, it will be created. If the KMS provider exists, it will be updated with
the given parameter values.
(string: <required>)– Specifies the name of the KMS provider to create or update. This is provided as part of the request URL.
(string: <required>)– Specifies the name of a KMS provider that's external to Vault. Must be set to
gcpckms. Cannot be changed after creation.
(map<string|string>: nil)– The credentials to use for authentication with GCP Cloud KMS. Supplying values for this parameter is optional, as credentials may also be specified as environment variables. See the authentication section for details on precedence.