Struct aws_sdk_paymentcryptography::types::Key
source · #[non_exhaustive]pub struct Key {Show 13 fields
pub key_arn: String,
pub key_attributes: Option<KeyAttributes>,
pub key_check_value: String,
pub key_check_value_algorithm: KeyCheckValueAlgorithm,
pub enabled: bool,
pub exportable: bool,
pub key_state: KeyState,
pub key_origin: KeyOrigin,
pub create_timestamp: DateTime,
pub usage_start_timestamp: Option<DateTime>,
pub usage_stop_timestamp: Option<DateTime>,
pub delete_pending_timestamp: Option<DateTime>,
pub delete_timestamp: Option<DateTime>,
}
Expand description
Metadata about an Amazon Web Services Payment Cryptography key.
Fields (Non-exhaustive)§
This struct is marked as non-exhaustive
Struct { .. }
syntax; cannot be matched against without a wildcard ..
; and struct update syntax will not work.key_arn: String
The Amazon Resource Name (ARN) of the key.
key_attributes: Option<KeyAttributes>
The role of the key, the algorithm it supports, and the cryptographic operations allowed with the key. This data is immutable after the key is created.
key_check_value: String
The key check value (KCV) is used to check if all parties holding a given key have the same key or to detect that a key has changed.
key_check_value_algorithm: KeyCheckValueAlgorithm
The algorithm that Amazon Web Services Payment Cryptography uses to calculate the key check value (KCV). It is used to validate the key integrity.
For TDES keys, the KCV is computed by encrypting 8 bytes, each with value of zero, with the key to be checked and retaining the 3 highest order bytes of the encrypted result. For AES keys, the KCV is computed using a CMAC algorithm where the input data is 16 bytes of zero and retaining the 3 highest order bytes of the encrypted result.
enabled: bool
Specifies whether the key is enabled.
exportable: bool
Specifies whether the key is exportable. This data is immutable after the key is created.
key_state: KeyState
The state of key that is being created or deleted.
key_origin: KeyOrigin
The source of the key material. For keys created within Amazon Web Services Payment Cryptography, the value is AWS_PAYMENT_CRYPTOGRAPHY
. For keys imported into Amazon Web Services Payment Cryptography, the value is EXTERNAL
.
create_timestamp: DateTime
The date and time when the key was created.
usage_start_timestamp: Option<DateTime>
The date and time after which Amazon Web Services Payment Cryptography will start using the key material for cryptographic operations.
usage_stop_timestamp: Option<DateTime>
The date and time after which Amazon Web Services Payment Cryptography will stop using the key material for cryptographic operations.
delete_pending_timestamp: Option<DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when KeyState
is DELETE_PENDING
and the key is scheduled for deletion.
delete_timestamp: Option<DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when when the KeyState
is DELETE_COMPLETE
and the Amazon Web Services Payment Cryptography key is deleted.
Implementations§
source§impl Key
impl Key
sourcepub fn key_attributes(&self) -> Option<&KeyAttributes>
pub fn key_attributes(&self) -> Option<&KeyAttributes>
The role of the key, the algorithm it supports, and the cryptographic operations allowed with the key. This data is immutable after the key is created.
sourcepub fn key_check_value(&self) -> &str
pub fn key_check_value(&self) -> &str
The key check value (KCV) is used to check if all parties holding a given key have the same key or to detect that a key has changed.
sourcepub fn key_check_value_algorithm(&self) -> &KeyCheckValueAlgorithm
pub fn key_check_value_algorithm(&self) -> &KeyCheckValueAlgorithm
The algorithm that Amazon Web Services Payment Cryptography uses to calculate the key check value (KCV). It is used to validate the key integrity.
For TDES keys, the KCV is computed by encrypting 8 bytes, each with value of zero, with the key to be checked and retaining the 3 highest order bytes of the encrypted result. For AES keys, the KCV is computed using a CMAC algorithm where the input data is 16 bytes of zero and retaining the 3 highest order bytes of the encrypted result.
sourcepub fn exportable(&self) -> bool
pub fn exportable(&self) -> bool
Specifies whether the key is exportable. This data is immutable after the key is created.
sourcepub fn key_origin(&self) -> &KeyOrigin
pub fn key_origin(&self) -> &KeyOrigin
The source of the key material. For keys created within Amazon Web Services Payment Cryptography, the value is AWS_PAYMENT_CRYPTOGRAPHY
. For keys imported into Amazon Web Services Payment Cryptography, the value is EXTERNAL
.
sourcepub fn create_timestamp(&self) -> &DateTime
pub fn create_timestamp(&self) -> &DateTime
The date and time when the key was created.
sourcepub fn usage_start_timestamp(&self) -> Option<&DateTime>
pub fn usage_start_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will start using the key material for cryptographic operations.
sourcepub fn usage_stop_timestamp(&self) -> Option<&DateTime>
pub fn usage_stop_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will stop using the key material for cryptographic operations.
sourcepub fn delete_pending_timestamp(&self) -> Option<&DateTime>
pub fn delete_pending_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when KeyState
is DELETE_PENDING
and the key is scheduled for deletion.
sourcepub fn delete_timestamp(&self) -> Option<&DateTime>
pub fn delete_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when when the KeyState
is DELETE_COMPLETE
and the Amazon Web Services Payment Cryptography key is deleted.