Struct aws_sdk_paymentcryptography::types::Key
source · #[non_exhaustive]pub struct Key {Show 13 fields
pub key_arn: String,
pub key_attributes: Option<KeyAttributes>,
pub key_check_value: String,
pub key_check_value_algorithm: KeyCheckValueAlgorithm,
pub enabled: bool,
pub exportable: bool,
pub key_state: KeyState,
pub key_origin: KeyOrigin,
pub create_timestamp: DateTime,
pub usage_start_timestamp: Option<DateTime>,
pub usage_stop_timestamp: Option<DateTime>,
pub delete_pending_timestamp: Option<DateTime>,
pub delete_timestamp: Option<DateTime>,
}Expand description
Metadata about an Amazon Web Services Payment Cryptography key.
Fields (Non-exhaustive)§
This struct is marked as non-exhaustive
Struct { .. } syntax; cannot be matched against without a wildcard ..; and struct update syntax will not work.key_arn: StringThe Amazon Resource Name (ARN) of the key.
key_attributes: Option<KeyAttributes>The role of the key, the algorithm it supports, and the cryptographic operations allowed with the key. This data is immutable after the key is created.
key_check_value: StringThe key check value (KCV) is used to check if all parties holding a given key have the same key or to detect that a key has changed.
key_check_value_algorithm: KeyCheckValueAlgorithmThe algorithm that Amazon Web Services Payment Cryptography uses to calculate the key check value (KCV). It is used to validate the key integrity.
For TDES keys, the KCV is computed by encrypting 8 bytes, each with value of zero, with the key to be checked and retaining the 3 highest order bytes of the encrypted result. For AES keys, the KCV is computed using a CMAC algorithm where the input data is 16 bytes of zero and retaining the 3 highest order bytes of the encrypted result.
enabled: boolSpecifies whether the key is enabled.
exportable: boolSpecifies whether the key is exportable. This data is immutable after the key is created.
key_state: KeyStateThe state of key that is being created or deleted.
key_origin: KeyOriginThe source of the key material. For keys created within Amazon Web Services Payment Cryptography, the value is AWS_PAYMENT_CRYPTOGRAPHY. For keys imported into Amazon Web Services Payment Cryptography, the value is EXTERNAL.
create_timestamp: DateTimeThe date and time when the key was created.
usage_start_timestamp: Option<DateTime>The date and time after which Amazon Web Services Payment Cryptography will start using the key material for cryptographic operations.
usage_stop_timestamp: Option<DateTime>The date and time after which Amazon Web Services Payment Cryptography will stop using the key material for cryptographic operations.
delete_pending_timestamp: Option<DateTime>The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when KeyState is DELETE_PENDING and the key is scheduled for deletion.
delete_timestamp: Option<DateTime>The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when when the KeyState is DELETE_COMPLETE and the Amazon Web Services Payment Cryptography key is deleted.
Implementations§
source§impl Key
impl Key
sourcepub fn key_attributes(&self) -> Option<&KeyAttributes>
pub fn key_attributes(&self) -> Option<&KeyAttributes>
The role of the key, the algorithm it supports, and the cryptographic operations allowed with the key. This data is immutable after the key is created.
sourcepub fn key_check_value(&self) -> &str
pub fn key_check_value(&self) -> &str
The key check value (KCV) is used to check if all parties holding a given key have the same key or to detect that a key has changed.
sourcepub fn key_check_value_algorithm(&self) -> &KeyCheckValueAlgorithm
pub fn key_check_value_algorithm(&self) -> &KeyCheckValueAlgorithm
The algorithm that Amazon Web Services Payment Cryptography uses to calculate the key check value (KCV). It is used to validate the key integrity.
For TDES keys, the KCV is computed by encrypting 8 bytes, each with value of zero, with the key to be checked and retaining the 3 highest order bytes of the encrypted result. For AES keys, the KCV is computed using a CMAC algorithm where the input data is 16 bytes of zero and retaining the 3 highest order bytes of the encrypted result.
sourcepub fn exportable(&self) -> bool
pub fn exportable(&self) -> bool
Specifies whether the key is exportable. This data is immutable after the key is created.
sourcepub fn key_origin(&self) -> &KeyOrigin
pub fn key_origin(&self) -> &KeyOrigin
The source of the key material. For keys created within Amazon Web Services Payment Cryptography, the value is AWS_PAYMENT_CRYPTOGRAPHY. For keys imported into Amazon Web Services Payment Cryptography, the value is EXTERNAL.
sourcepub fn create_timestamp(&self) -> &DateTime
pub fn create_timestamp(&self) -> &DateTime
The date and time when the key was created.
sourcepub fn usage_start_timestamp(&self) -> Option<&DateTime>
pub fn usage_start_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will start using the key material for cryptographic operations.
sourcepub fn usage_stop_timestamp(&self) -> Option<&DateTime>
pub fn usage_stop_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will stop using the key material for cryptographic operations.
sourcepub fn delete_pending_timestamp(&self) -> Option<&DateTime>
pub fn delete_pending_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when KeyState is DELETE_PENDING and the key is scheduled for deletion.
sourcepub fn delete_timestamp(&self) -> Option<&DateTime>
pub fn delete_timestamp(&self) -> Option<&DateTime>
The date and time after which Amazon Web Services Payment Cryptography will delete the key. This value is present only when when the KeyState is DELETE_COMPLETE and the Amazon Web Services Payment Cryptography key is deleted.