Shows how to use the AWS SDK for PHP to work with AWS Key Management Service (AWS KMS).
AWS KMS is an encryption and key management service scaled for the cloud.
- Running this code might result in charges to your AWS account. For more details, see AWS Pricing and Free Tier.
- Running the tests might result in charges to your AWS account.
- We recommend that you grant your code least privilege. At most, grant only the minimum permissions required to perform the task. For more information, see Grant least privilege.
- This code is not tested in every AWS Region. For more information, see AWS Regional Services.
For prerequisites, see the README in the php folder.
- Hello AWS KMS (
ListKeys)
Code examples that show you how to perform the essential operations within a service.
Code excerpts that show you how to call individual service functions.
- CreateAlias
- CreateGrant
- CreateKey
- Decrypt
- DeleteAlias
- DescribeKey
- DisableKey
- EnableKey
- Encrypt
- ListAliases
- ListGrants
- ListKeys
- PutKeyPolicy
- RevokeGrant
- ScheduleKeyDeletion
- Sign
- TagResource
This example shows you how to get started using AWS KMS.
This example shows you how to do the following:
- Create a KMS key.
- List KMS keys for your account and get details about them.
- Enable and disable KMS keys.
- Generate a symmetric data key that can be used for client-side encryption.
- Generate an asymmetric key used to digitally sign data.
- Tag keys.
- Delete KMS keys.
⚠ Running tests might result in charges to your AWS account.
To find instructions for running these tests, see the README
in the php folder.
Copyright Amazon.com, Inc. or its affiliates. All Rights Reserved.
SPDX-License-Identifier: Apache-2.0