File: init-aws-kms.sh

package info (click to toggle)
python-securesystemslib 1.3.0-3
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid
  • size: 3,316 kB
  • sloc: python: 5,319; sh: 38; makefile: 5
file content (27 lines) | stat: -rwxr-xr-x 799 bytes parent folder | download | duplicates (2)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
#!/usr/bin/env bash

# Create test keys
awslocal kms create-key \
    --key-spec RSA_4096 \
    --key-usage SIGN_VERIFY

awslocal kms create-key \
    --key-spec ECC_NIST_P256 \
    --key-usage SIGN_VERIFY

awslocal kms create-key \
    --key-spec ECC_NIST_P384 \
    --key-usage SIGN_VERIFY

# Create test keyid aliases ("alias/" prefix is mandatory)
awslocal kms create-alias \
    --alias-name alias/rsa \
    --target-key-id $(awslocal kms list-keys --query "Keys[0].KeyId" --output text)

awslocal kms create-alias \
    --alias-name alias/ecdsa_nistp256 \
    --target-key-id $(awslocal kms list-keys --query "Keys[1].KeyId" --output text)

awslocal kms create-alias \
    --alias-name alias/ecdsa_nistp384 \
    --target-key-id $(awslocal kms list-keys --query "Keys[2].KeyId" --output text)