AutokeyConfig(mapping=None, *, ignore_unknown_fields=False, **kwargs)
Cloud KMS Autokey configuration for a folder.
Attributes |
|
---|---|
Name | Description |
name |
str
Identifier. Name of the AutokeyConfig resource, e.g. folders/{FOLDER_NUMBER}/autokeyConfig .
|
key_project |
str
Optional. Name of the key project, e.g. projects/{PROJECT_ID} or projects/{PROJECT_NUMBER} ,
where Cloud KMS Autokey will provision a new
CryptoKey when a
KeyHandle is created. On
UpdateAutokeyConfig,
the caller will require cloudkms.cryptoKeys.setIamPolicy
permission on this key project. Once configured, for Cloud
KMS Autokey to function properly, this key project must have
the Cloud KMS API activated and the Cloud KMS Service Agent
for this key project must be granted the cloudkms.admin
role (or pertinent permissions). A request with an empty key
project field will clear the configuration.
|