Status AWS KMS kunci kunci - AWS Key Management Service

Terjemahan disediakan oleh mesin penerjemah. Jika konten terjemahan yang diberikan bertentangan dengan versi bahasa Inggris aslinya, utamakan versi bahasa Inggris.

Status AWS KMS kunci kunci

AWS KMS key Selalu memiliki status kunci. Operasi pada KMS kunci dan lingkungannya dapat mengubah status kunci itu, baik sementara, atau sampai operasi lain mengubah status kuncinya.

Tabel di bagian ini menunjukkan bagaimana status kunci memengaruhi panggilan ke AWS KMS API operasi. Sebagai hasil dari keadaan kuncinya, operasi pada KMS kunci diharapkan berhasil (), gagal (X), atau berhasil hanya dalam kondisi tertentu (?). Hasilnya sering berbeda untuk KMS kunci dengan bahan kunci impor.

Tabel ini hanya mencakup API operasi yang menggunakan KMS kunci yang ada. Operasi lain, seperti CreateKeydan ListKeys, dihilangkan.

Status kunci dan tipe KMS kunci

Jenis KMS kunci menentukan status kunci yang dapat dimilikinya.

  • Semua KMS kunci bisa berada diEnabled,Disabled, dan PendingDeletion negara bagian.

  • Sebagian besar KMS kunci dibuat di Enabled negara bagian. Kunci dengan material kunci yang diimpor dibuat di status PendingImport.

  • PendingImportNegara hanya berlaku untuk KMS kunci dengan bahan kunci yang diimpor.

  • UnavailableStatus hanya berlaku untuk KMS kunci di toko kunci khusus. KMSKunci di toko AWS CloudHSM kunci adalah Unavailable ketika toko kunci khusus sengaja terputus dari klasternya AWS CloudHSM . KMSKunci di penyimpanan kunci eksternal adalah Unavailable ketika penyimpanan kunci khusus sengaja terputus dari proxy penyimpanan kunci eksternalnya. Anda dapat melihat dan mengelola KMS kunci yang tidak tersedia, tetapi Anda tidak dapat menggunakannya dalam operasi kriptografi.

    Status kunci kunci di toko KMS kunci khusus tidak terpengaruh oleh perubahan pada kunci dukungannya. KMSKunci di penyimpanan AWS CloudHSM kunci tidak terpengaruh oleh perubahan pada materi kunci terkait di AWS CloudHSM cluster. KMSKunci di penyimpanan kunci eksternal tidak terpengaruh oleh perubahan pada kunci eksternal di manajer kunci eksternal. Jika kunci dukungan dinonaktifkan atau dihapus, status KMS kunci tidak berubah, tetapi operasi kriptografi menggunakan KMS kunci gagal.

  • Status kunci Creating, Updating, dan PendingReplicaDeletion hanya berlaku untuk kunci multi-wilayah.

    • Kunci replika multi-wilayah adalah status kunci Creating sementara saat sedang dibuat. Proses ini mungkin masih berlangsung ketika ReplicateKeyoperasi selesai. Ketika proses replikasi selesai, kunci replika dalam status Enabled atau PendingImport.

    • Kunci multi-Wilayah berada dalam status kunci Updating sementara saat Wilayah utama sedang diperbarui. Proses ini mungkin masih berlangsung ketika UpdatePrimaryRegionoperasi selesai. Ketika proses pembaruan selesai, kunci primer dan replika melanjutkan status kunci Enabled.

    • Saat Anda menjadwalkan penghapusan kunci primer multi-Wilayah yang memiliki kunci replika, kunci utama berada dalam status PendingReplicaDeletion hingga semua kunci replikanya dihapus. Kemudian status kunci berubah menjadi PendingDeletion. Untuk detailnya, lihat Deleting multi-Region keys.

Tabel status kunci

Tabel berikut menunjukkan bagaimana keadaan kunci KMS kunci mempengaruhi AWS KMS operasi.

Deskripsi catatan kaki bernomor ([n]) berada di akhir topik ini.


Anda mungkin perlu menggulir secara horizontal atau vertikal untuk melihat semua data dalam tabel ini.

API Diaktifkan Nonaktif

Penghapusan yang tertunda

Penghapusan replika yang tertunda

Menunggu impor Tidak tersedia Membuat Memperbarui
CancelKeyDeletion No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[4], [13]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


CreateAlias Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
CreateGrant Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
Dekripsi Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
DeleteAlias Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
DeleteImportedKeyMaterial Green checkmark icon indicating success or completion.


Green checkmark icon indicating success or completion.


Green checkmark icon indicating success or completion.


Green checkmark icon indicating success or completion.

(Tidak ada efek)

N/A No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


DescribeKey Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
DisableKey Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


DisableKeyRotation Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.

[1] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.

[3] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Question mark icon in a purple circle, representing help or information.


EnableKey Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


EnableKeyRotation Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.

[1] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.

[3] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Question mark icon in a purple circle, representing help or information.


Enkripsi Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GenerateDataKey Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GenerateDataKeyPair Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GenerateDataKeyPairWithoutPlaintext Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GenerateDataKeyWithoutPlaintext Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GenerateMac Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

N/A N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
GetKeyPolicy Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
GetKeyRotationStatus Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


GetParametersForImport Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.

[8] atau [9]

Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


GetPublicKey Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

N/A N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
ImportKeyMaterial Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.

[8] atau [9]

Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
ListAliases Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
ListGrants Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
ListKeyPolicies Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
ListKeyRotations Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Question mark icon in a purple circle, representing help or information.


Question mark icon in a purple circle, representing help or information.


ListResourceTags Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
PutKeyPolicy Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
ReEncrypt Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
ReplicateKey Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


N/A No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


RetireGrant Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
RevokeGrant Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
RotateKeyOnDemand Question mark icon in a purple circle, representing help or information.


No entry symbol with a person icon, indicating restricted access or prohibition.

[1] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.

[3] atau [7]

No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.


Question mark icon in a purple circle, representing help or information.


ScheduleKeyDeletion Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Sign Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

N/A N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
TagResource Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
UntagResource Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
UpdateAlias Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Question mark icon in a purple circle, representing help or information.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
UpdateKeyDescription Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion. Green checkmark icon indicating success or completion.
UpdatePrimaryRegion Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

No entry symbol with a person icon, indicating restricted access or prohibition.


N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
Verifikasi Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

N/A N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.
VerifyMac Green checkmark icon indicating success or completion. No entry symbol with a person icon, indicating restricted access or prohibition.


No entry symbol with a person icon, indicating restricted access or prohibition.

[2] atau [3]

N/A N/A No entry symbol with a person icon, indicating restricted access or prohibition.


Green checkmark icon indicating success or completion.

Rincian Tabel

  • [1] DisabledException: <key ARN> is disabled.

  • [2] DisabledException: <key ARN> is pending deletion (or pending replica deletion).

  • [3] KMSInvalidStateException: <key ARN> is pending deletion (or pending replica deletion).

  • [4] KMSInvalidStateException: <key ARN> is not pending deletion (or pending replica deletion).

  • [5] KMSInvalidStateException: <key ARN> is pending import.

  • [6] UnsupportedOperationException: <key ARN> origin is EXTERNAL which is not valid for this operation.

  • [7] Jika KMS kunci telah mengimpor bahan kunci atau ada di toko kunci khusus:UnsupportedOperationException.

  • [8] Jika KMS kunci telah mengimpor bahan kunci: KMSInvalidStateException

  • [9] Jika KMS kunci tidak dapat atau tidak memiliki bahan kunci impor:UnsupportedOperationException.

  • [10] Jika KMS kunci sumber tertunda penghapusan, perintah berhasil. Jika KMS kunci tujuan tertunda penghapusan, perintah gagal dengan kesalahan: KMSInvalidStateException : <key ARN> is pending deletion.

  • [11] KMSInvalidStateException: <key ARN> is unavailable. Anda tidak dapat melakukan operasi ini pada KMS kunci yang tidak tersedia.

  • [12] Operasi berhasil, tetapi status kunci KMS kunci tidak berubah sampai tersedia.

  • [13] Sementara KMS kunci di toko kunci khusus sedang menunggu penghapusan, status kuncinya tetap ada PendingDeletion meskipun KMS kunci menjadi tidak tersedia. Ini memungkinkan Anda untuk membatalkan penghapusan KMS kunci kapan saja selama masa tunggu.

  • [14] KMSInvalidStateException: <key ARN> is creating. AWS KMS melempar pengecualian ini saat mereplikasi kunci Multi-region (). ReplicateKey

  • [15] KMSInvalidStateException: <key ARN> is updating. AWS KMS melempar pengecualian ini saat memperbarui Wilayah utama dari kunci Multi-wilayah ()UpdatePrimaryRegion.