Mondoo Docs

Google Cloud (GCP) KMS crypto key

gcp.project.kmsService.keyring.cryptokey MQL resource for querying Google Cloud infrastructure with cnquery and cnspec.

Google CloudPrivate Resource

Google Cloud (GCP) KMS crypto key

Min version: latestDefaults: name purpose

Relationships

Mini Map
Google Cloud
5 resources · 6 relationshipsClick to select, expand fields to see properties.

Fields (15)

FieldTypeDescription
createdrequired
timeCreation timestamp
cryptoKeyBackendrequired
stringResource name of the backend environment where the key material for all crypto key versions reside
destroyScheduledDurationrequired
timePeriod of time that versions of this key spend in DESTROY_SCHEDULED state before being destroyed
iamPolicy
[]gcp.resourcemanager.bindingCrypto key IAM policy
importOnlyrequired
intWhether this key can contain imported versions only
labelsrequired
map[string]stringUser-defined labels
namerequired
stringCrypto key name
nextRotationrequired
timeTime at which KMS will create a new version of this key and mark it as primary
primaryrequired
gcp.project.kmsService.keyring.cryptokey.versionPrimary version for encrypt to use for this crypto key
purposerequired
stringCrypto key purpose
resourcePathrequired
stringFull resource path
rotationPeriodrequired
timeRotation period
versionprivate
gcp.project.kmsService.keyring.cryptokey.versionGoogle Cloud (GCP) KMS crypto key version
versions
[]gcp.project.kmsService.keyring.cryptokey.versionList of cryptokey versions
versionTemplaterequired
dictTemplate describing the settings for new crypto key versions