Rechercher dans le manuel MySQL
6.4.4.9 Plugin-Specific Keyring Key-Management Functions
For each keyring plugin-specific user-defined function (UDF), this section describes its purpose, calling sequence, and return value. For information about general-purpose keyring UDFs, see Section 6.4.4.8, “General-Purpose Keyring Key-Management Functions”.
This UDF is associated with the
keyring_aws
plugin. Its use requires theSUPER
privilege.keyring_aws_rotate_cmk()
rotates the customer master key (CMK). Rotation changes only the key that AWS KMS uses for subsequent data key-encryption operations. AWS KMS maintains previous CMK versions, so keys generated using previous CMKs remain decryptable after rotation.Rotation changes the CMK value used inside AWS KMS but does not change the ID used to refer to it, so there is no need to change the
keyring_aws_cmk_id
system variable after callingkeyring_aws_rotate_cmk()
.Arguments:
None.
Return value:
Returns 1 for success, or
NULL
and an error for failure.This UDF is associated with the
keyring_aws
plugin. Its use requires theSUPER
privilege.keyring_aws_rotate_keys()
rotates keys stored in thekeyring_aws
storage file named by thekeyring_aws_data_file
system variable. Rotation sends each key stored in the file to AWS KMS for re-encryption using the value of thekeyring_aws_cmk_id
system variable as the CMK value, and stores the new encrypted keys in the file.keyring_aws_rotate_keys()
is useful for key re-encryption under these circumstances:After rotating the CMK; that is, after invoking the
keyring_aws_rotate_cmk()
UDFAfter changing the
keyring_aws_cmk_id
system variable to a different key value
Arguments:
None.
Return value:
Returns 1 for success, or
NULL
and an error for failure.
Document created the 26/06/2006, last modified the 26/10/2018
Source of the printed document:https://www.gaudry.be/en/mysql-rf-keyring-udfs-plugin-specific.html
The infobrol is a personal site whose content is my sole responsibility. The text is available under CreativeCommons license (BY-NC-SA). More info on the terms of use and the author.
References
These references and links indicate documents consulted during the writing of this page, or which may provide additional information, but the authors of these sources can not be held responsible for the content of this page.
The author This site is solely responsible for the way in which the various concepts, and the freedoms that are taken with the reference works, are presented here. Remember that you must cross multiple source information to reduce the risk of errors.