A Vault Key in Oracle Cloud Infrastructure is a managed encryption key stored in the Vault service. It is used to protect sensitive data by enabling encryption and decryption operations for resources and applications. The key is backed by hardware security modules for strong security and can be rotated, disabled, or retired as needed.

oci.kms_key

Fields

TitleIDTypeData TypeDescription
_keycorestring
auto_key_rotation_detailscorejsonThe value to assign to the auto_key_rotation_details property of this Key.
cloud_account_idcorestringThe identifier of the related cloud account. The concept of an account might have different names in different cloud providers. AWS is calling it account, GCP calls it project and Azure uses the term subscription.
cloud_account_namecorestringThe name of the account this resource belongs to.
cloud_providercorestringThe name of the cloud provider.
cloud_tagscorehstore
compartment_idcorestringThe value to assign to the compartment_id property of this Key.
created_atcoretimestampTime when the resource has been created.
current_key_versioncorestringThe value to assign to the current_key_version property of this Key.
external_key_reference_detailscorejsonThe value to assign to the external_key_reference_details property of this Key.
freeform_tagscorehstoreThe value to assign to the freeform_tags property of this Key.
idcorestringThe value to assign to the id property of this Key.
is_auto_rotation_enabledcoreboolThe value to assign to the is_auto_rotation_enabled property of this Key.
is_primarycoreboolThe value to assign to the is_primary property of this Key.
key_shapecorejsonThe value to assign to the key_shape property of this Key.
lifecycle_statecorestringThe value to assign to the lifecycle_state property of this Key. Allowed values for this property are: "CREATING", "ENABLING", "ENABLED", "DISABLING", "DISABLED", "DELETING", "DELETED", "PENDING_DELETION", "SCHEDULING_DELETION", "CANCELLING_DELETION", "UPDATING", "BACKUP_IN_PROGRESS", "RESTORING", 'UNKNOWN_ENUM_VALUE'. Any unrecognized values returned by a service will be mapped to 'UNKNOWN_ENUM_VALUE'.
namecorestringThe name of this resource.
protection_modecorestringThe value to assign to the protection_mode property of this Key. Allowed values for this property are: "HSM", "SOFTWARE", "EXTERNAL", 'UNKNOWN_ENUM_VALUE'. Any unrecognized values returned by a service will be mapped to 'UNKNOWN_ENUM_VALUE'.
region_idcorestringThe region this resource resides within.
replica_detailscorejsonThe value to assign to the replica_details property of this Key.
resource_typecorestringThe name of the resource type.
restored_from_key_idcorestringThe value to assign to the restored_from_key_id property of this Key.
tagscorehstore_csv
time_createdcoretimestampThe value to assign to the time_created property of this Key.
time_of_deletioncoretimestampThe value to assign to the time_of_deletion property of this Key.
updated_atcoretimestampTime when the resource has been updated the last time.
vault_idcorestringThe value to assign to the vault_id property of this Key.
zone_idcorestringThe zone this resource resides within.