AWS KMS MasterClass - 2024101

AWS KMS (Key Management Service) is a very important service. It helps in encryption of customer data. Various aspects of KMS are often misunderstood. This 3-hour AWS KMS MasterClass is an attempt to lay a solid foundation of KMS concepts using which you can achieve many complex real-world scenarios. KMS MasterClass is available here (Video ID: 2024101)


TOPICS COVERED

  1. Envelope encryption – overall concept
  2. Envelope encryption – implementation in AWS (types of keys, operations, etc.)
  3. KMS Keys DEMO
  4. Comparison of KMS Keys
  5. Access control for KMS keys – resource based and IAM policies (with DEMO)
  6. Key alias & ABAC (with DEMO)
  7. Encryption Context & EBS volume encryption (with DEMO)
  8. S3 encryption – types
  9. S3 Bucket Key – new concept to reduce your cost (walkthrough)
  10. KMS Pricing
  11. Exercise for you

RELATED CONTENT

  1. Symmetric vs asymmetric encryption - watch here 
  2. AWS KMS commands - read here
  3. Encrypt/decrypt demo - watch here
  4. Multiple AWS policies working together - watch here 
  5. ABAC with key alias - read here
  6. S3 SSE types:
  7. S3 bucket key - articles:
    • Reducing the cost of SSE-KMS with Amazon S3 Bucket Keys - read here
    • Reduce encryption costs by using Amazon S3 Bucket Keys on existing objects - read here
  8. Further reading material:


Published on 22-Jan-2024
Share: