当前位置:首页 > 报告详情

AWS KMS 十年发展历程:架构如何演变以赢得客户信任.pdf

上传人: 明**** 编号:1012486 2025-12-21 56页 629.07KB

1、 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.S E C 2 1 8AWS KMS over the decade:How architecture evolved to earn customer trustKevin LeeSr.Product Manager-TechnicalAmazon Web ServicesSamuel WaymouthSr.Complianc

2、e SpecialistAmazon Web Services 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.Agenda1.Look into how AWS Key Management Service(KMS)architecture evolved over the years from the product lens2.Understanding the difference between having control vs.having ownership of encryption key

3、s,and how AWS KMS gives you choices for managing your keys3.See how encryption and authorization works together in solving digital sovereignty use cases4.Learn about our new independent cloud AWS European Sovereign Cloud 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.A W S K M SW

4、hy was it needed?A short look at the state of the world a decade agoGrowing demand from regulated industries(e.g.,financial services,healthcare,government)Desire for more control;need for customer-managed encryption keyTraditional key management strategies conflicted when scaling to the cloud 2025,A

5、mazon Web Services,Inc.or its affiliates.All rights reserved.Three design tenets of AWS KMSSecurityDurabilityAvailabilityCustomers trust us to protect their most sensitive dataCustomers rely on us to safeguard their keys from any eventCustomers depends on us to run their most demanding workload 2025

6、,Amazon Web Services,Inc.or its affiliates.All rights reserved.Three design tenets of AWS KMSSecurityDurabilityAvailabilityCustomers trust us to protect their most sensitive dataCustomers rely on us to safeguard their keys from any eventCustomers depends on us to run their most demanding workloadTra

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据《AWS KMS over the decade: How architecture evolved to earn customer trust》的内容,以下是全文关键点的概括: 1. **AWS KMS发展历程**:自2014年推出以来,AWS KMS经历了多次架构演变,以满足不断增长的需求和客户对数据安全的期望。 2. **控制与所有权**:AWS KMS提供对加密密钥的控制,而非所有权,确保客户对密钥的完整管理。 3. **加密与授权**:KMS结合了加密和授权,解决数字主权用例,如数据主权、操作主权和合同措施。 4. **新服务推出**:包括自定义密钥存储、外部密钥存储和FIPS 140-3验证的HSM,以满足不同客户的需求。 5. **AWS欧洲主权云**:为满足欧洲客户的数据主权需求,AWS计划推出独立的欧洲主权云,预计2025年底推出。 6. **安全性**:AWS KMS通过FIPS 140-3和SOC 1/2认证,确保高安全性和合规性。 7. **透明度和审计**:AWS强调透明度和第三方审计,以增强客户对KMS系统的信任。
十年进化之路" 控制与所有权的区别" 数据主权新选择"
客服
商务合作
小程序
服务号
折叠