How Are Default Keys Generated?
Default keys are automatically generated.
When a user uses KMS for encryption in a cloud service for the first time, the cloud service automatically creates a key with the alias suffix /default.
On the KMS console, you can query Default Master Keys, but can neither disable them nor schedule their deletion.
Alias |
Cloud Service |
---|---|
obs/default |
Object Storage Service (OBS) |
evs/default |
Elastic Volume Service (EVS) |
ims/default |
Image Management Service (IMS) |
vbs/default |
Volume Backup Service (VBS) |
dlf/default |
Data Lake Factory (DLF) |
sfs/default |
Scalable File Service (SFS) |
kps/default |
Key Pair Service (KPS) |
csms/default |
Cloud Secret Management Service (CSMS) |
KMS Related FAQs
- What Is Key Management Service?
- What Is a Customer Master Key?
- What Is a Default Master Key?
- What Are the Differences Between a Custom Key and a DMK?
- What Is a Data Encryption Key?
- Why Cannot I Delete a CMK Immediately?
- Which Cloud Services Can Use KMS for Encryption?
- How Do Huawei Cloud Services Use KMS to Encrypt Data?
- What Are the Benefits of Envelope Encryption?
- Is There a Limit on the Number of CMKs That I Can Create on KMS?
- Can I Export a CMK from KMS?
- Can I Decrypt My Data if I Permanently Delete My CMK?
- How Do I Use the Online Tool to Encrypt or Decrypt Small Volumes of Data?
- Can I Update CMKs Created by KMS-Generated Key Materials?
- How Are Default Keys Generated?
- What Should I Do If I Do Not Have the Permissions to Perform Operations on KMS?
- Why Can't I Wrap Asymmetric Keys by Using -id-aes256-wrap-pad in OpenSSL?
- Key algorithms supported by KMS
- What Should I Do If KMS Failed to Be Requested and Error Code 401 Is Displayed?
- What Is the Relationship Between the Ciphertext and Plaintext Returned by the encrypt-data API?
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.
more