KMSClient.*DataKey methods, querying Key Management Service data keys, return some KMSDataKey instances. The KMSDataKey object describes an Amazon Key Management Service data key. For instance, the generateDataKey returns the generated KMSDataKey object.
Name | Type | Description |
---|---|---|
KMSDataKey.id | string | The identifier of the Key Management Service key that encrypted the data key. |
KMSDataKey.ciphertextBlob | string | The base64-encoded encrypted copy of the data key. |
KMSDataKey.plaintext | string | The plain text data key. Use this data key to encrypt your data outside of Key Management Service. Then, remove it from memory as soon as possible. |