Skip to main content

๐Ÿ’ผ 1.10 Ensure KMS encryption keys are rotated within a period of 90 days

  • Contextual name: ๐Ÿ’ผ 1.10 Ensure KMS encryption keys are rotated within a period of 90 days
  • ID: /frameworks/cis-gcp-v1.1.0/01/10
  • Located in: ๐Ÿ’ผ 1 Identity and Access Management

Descriptionโ€‹

Google Cloud Key Management Service stores cryptographic keys in a hierarchical structure designed for useful and elegant access control management.

The format for the rotation schedule depends on the client library that is used. For the gcloud command-line tool, the next rotation time must be in 'ISO' or 'RFC3339' format, and the rotation period must be in the form 'INTEGER[UNIT]', where units can be one of seconds (s), minutes (m), hours (h) or days (d).

Similarโ€‹

  • Internal
    • ID: dec-c-06c987ad

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags