What features does AWS KMS have?

Below are the top features of AWS KMS.

  • AWS KMS has a managed service in AWS cloud for key storage. Both customers and AWS services can access keys stored in this way.
  • AWS KMS is FIPS 140-2 Level 2 compliant and supports symmetric and asymmetric keys. It also supports RSAES_OAEP_SHA_1 and RSAES_OAEP_SHA_256 encryption algorithms with RSA 2048, RSA 3072, and RSA 4096 key types. Encryption algorithms cannot be used with the elliptic curve key types (ECC NIST P-256, ECC NIST P-384, ECC NIST-521, and ECC SECG P-256k1). When using elliptic curve key types, AWS KMS supports the ECDSA_SHA_256, ECDSA_SHA_384, and ECDSA_SHA_512 signing algorithms.
  • AWS KMS is capable of limited key management, storage and auditing, and encryption.