GCP Key Management

Overview
Critical
1
High
0
Medium
0
Low
1
Informational
0
Security issues (2)
Severity Non-Compliance Region Resource Issue Remediation Read more Action
Critical CIS 1.10 PCI DSS 3.7.4 HIPAA (Encryption) global my-keyring3-name KMS cryptographic key has no rotation period set. To fulfill HIPAA and PCI DSS key rotation requirements, ensure all cryptographic keys are set to rotate periodically. More info
Low global my-key-2 KMS cryptographic key has inadequate protection level: Protection level unspecified. Ensure the protection level for cryptographic keys is set to Software (Customer-managed encryption key, or CMEK), Hardware Security Module (HSM), or External key manager. More info
Key rings (3)
Name Location Keys Created Security issues
my-key-ringglobalmy-key
my-keyring3usmy-key5, my-keyring3-name
my-key-ring2southamerica-west1my-key-2
Key inventory (4)
Name Key ring Location Created Next rotation Status Protection level Security issues
my-keymy-key-ringglobal EnabledSoftware
my-key5my-keyring3us EnabledSoftware
my-keyring3-namemy-keyring3us EnabledSoftware 1 Critical (details)
my-key-2my-key-ring2southamerica-west1 EnabledProtection level unspecified 1 Low (details)
API keys (0)
Name Created Restrictions Security issues