Book Image

AWS Certified Solutions Architect ??? Associate Guide

By : Gabriel Ramirez, Stuart Scott
Book Image

AWS Certified Solutions Architect ??? Associate Guide

By: Gabriel Ramirez, Stuart Scott

Overview of this book

Amazon Web Services (AWS) is currently the leader in the public cloud market. With an increasing global interest in leveraging cloud infrastructure, the AWS Cloud from Amazon offers a cutting-edge platform for architecting, building, and deploying web-scale cloud applications. As more the rate of cloud platform adoption increases, so does the need for cloud certification. The AWS Certified Solution Architect – Associate Guide is your one-stop solution to gaining certification. Once you have grasped what AWS and its prerequisites are, you will get insights into different types of AWS services such as Amazon S3, EC2, VPC, SNS, and more to get you prepared with core Amazon services. You will then move on to understanding how to design and deploy highly scalable applications. Finally, you will study security concepts along with the AWS best practices and mock papers to test your knowledge. By the end of this book, you will not only be fully prepared to pass the AWS Certified Solutions Architect – Associate exam but also capable of building secure and reliable applications.
Table of Contents (26 chapters)
22
Mock Test 1
23
Mock Test 2

Key Management Service (KMS)

Throughout this chapter, I have mentioned the Key Management Service a number of times, mainly in relation to other services using it such as S3 and RDS, as well as many other AWS services that require encryption to be performed.

We already know that KMS uses symmetric cryptography, and this was evident when we looked at the S3 encryption mechanisms, since we saw that the very same key was used to decrypt the data that was used to encrypt the data. This is essentially symmetric cryptography. In this section, I will dive a little deeper into KMS to allow you to gain more of an understanding about the service itself.

So, what is KMS?

KMS is a central repository for storing encryption keys (customer...