Adding a GCP Key Management Server

You can add or modify a GCP Key Management Server from the Command Center.

Before You Begin

Verify that the account that you configure has the following permissions:

  • cloudkms.cryptoKeys.create

  • cloudkms.cryptoKeyVersions.useToEncrypt

  • cloudkms.cryptoKeyVersions.useToDecrypt

  • cloudkms.cryptoKeyVersions.destroy

Procedure

  1. From the navigation pane, go to Manage > Security.

    The Security page appears.

  2. Click the Key management servers tile.

    The Key management servers page appears.

  3. Click Add at the top right, and then select GCP KMS.

    The Add GCP KMS dialog box appears.

  4. In the Name box, enter the name of the key provider.

  5. From the Protection level list, select a level: HSM or Software.

  6. In the Key ring box, enter the key ring.

  7. From the Region list, select a region.

  8. In the JSON file path, browse and select the Credential JSON file.

  9. Click Submit.

Loading...