How-to guides
The user can enter the required information for the Secrets Manager service through the Samsung Cloud Platform Console, select detailed options, and create the service.
Secrets Manager Create
You can create and use Secrets Manager from the Samsung Cloud Platform Console.
To create Secrets Manager, follow the steps below.
All Services > Security > Secrets Manager Click the menu. Navigate to the Service Home page of Secrets Manager.
Click the Secrets Manager Create button on the Service Home page. You will be taken to the Secrets Manager Create page.
Secrets Manager creation On the page, enter the information required to create the service and enter additional information.
- Service Information Input area, please enter or select the required information.CategoryRequired status
Detailed description Secret name Required Enter Secret name Type Required Select the type to manage encrypted with Secret from the list Key/Value input Required Enter the Secret information’s Key/Value as a pair - + Click the + icon to add up to 10
- X Click the X icon to delete the entry
Encryption Key Required Select the KMS key to use when encrypting the Secret from the list - Choose a key created in the KMS service from the list. Or click +Create New to create a KMS key
- Only KMS keys for encryption/decryption can be selected. The selectable encryption/decryption KMS key types are encryption/decryption (AES-256), encryption/decryption and signing/verification (RSA-2048), encryption/decryption (ARIA) – three types
- When entering Key/Value, input must be within 64 KB; registration is not allowed if the size exceeds
- For detailed information on creating a KMS key, refer to Create KMS Key
Public Access Control Required Enter public access allowed IP - After entering IP address, click Add button to register up to 10
- Click Delete All button to delete all IP entries in the list
- 0.0.0.0/24 - 0.0.0.0/32 ranges can be registered but may be vulnerable to security
Private Access Control Select Use After selecting, select resources to allow private access - Click the Add button to add an access-allowed resource
- If not set to use, all subnet resources in the same region are allowed access
Description Select Enter description for Secrets Manager Table. Secrets Manager service information input items - Additional Information Input Enter or select the required information in the area.
Category Required or notDetailed description Tag Select Add Tag - Up to 50 can be added per resource
- After clicking the Add Tag button, enter or select Key, Value values
Table. Secrets Manager additional information input items
- Service Information Input area, please enter or select the required information.
Summary Check the detailed information and estimated billing amount generated in the panel, and click the Create button.
- When creation is complete, check the created resource on the Secrets Manager List page.
Secrets Manager View Detailed Information
Secrets Manager can view and edit the full list of resources and detailed information. Secrets Manager Details page consists of Detailed Information, Version, Tag, Activity History tabs.
To view detailed information of Secrets Manager, follow the steps below.
- All Services > Security > Secrets Manager Click the menu. Go to the Service Home page of Secrets Manager.
- Click the Secrets Manager menu on the Service Home page. You will be taken to the Secrets Manager List page.
- Secrets Manager List Click the resource to view detailed information on the page. Go to the Secrets Manager Details page.
- Secrets Manager Details At the top of the page, status information and descriptions of additional features are displayed.
Category Detailed description Status Displays the status of Secrets Manager - Active: available/active
- To be terminated: scheduled for deletion
Service cancellation Button to cancel the service Table. Secrets Manager status information and additional features
Detailed Information
Secrets Manager List page allows you to view detailed information of the selected resource and, if necessary, edit the information.
Category | Detailed description |
|---|---|
| service | service name |
| Resource Type | Resource Type |
| SRN | Unique resource ID in Samsung Cloud Platform |
| Resource Name | Resource Name |
| Resource ID | Unique resource ID in the service |
| Creator | User who created the service |
| Creation time | Service creation time |
| Editor | User who modified the service |
| Modification Date and Time | Service Modification Date and Time |
| Secret name | Name of the created Secret |
| Secret value | Entered Secret value
|
| Type | Type of the generated Secret |
| Recent search date/time | Recent search date/time of generated Secret |
| Encryption Key | Displays the KMS key name selected by the user
|
| URL | Public/Private URL information display
|
| Public Access Control | Display registered public access allowed IP
|
| Private Access Control | Display registered private access allowed resources
|
| Description | Display additional description for Secret
|
Version
Secrets Manager List page allows you to track the version of a selected Secret using labels.
When checking the version information of Secret Manager, refer to the definition of each item.
- Secret: Logical unit that stores sensitive (important) information
- Version: a snapshot of unique data that is newly created each time the Secret is modified (the unit that stores the actual value of the Secret)
- Label: a name tag or label attached to a specific version of a Secret (a pointer to reference a specific version)
| Category | Detailed description |
|---|---|
| Version ID | Displays the ID of the current version, previous version, and the version with a custom label (Custom Label) set
|
| Label | Secret version display
|
| Last Access Time | Secret’s Recent Access Time |
| Creation time | Creation time of Secret |
The constraints when using Secret’s version are as follows.
- Up to 100 versions can be stored per Secret. Regardless of whether a custom label is set, if the number of versions exceeds 100, the oldest versions will be deleted.
- For important versions with custom labels set, create a new Secret before the version is deleted due to quota exceedance, and configure the running application to reference the new Secret.
Tag
On the Secrets Manager List page, you can view the tag information of the selected resource, and you can add, modify, or delete it.
| Category | Detailed description |
|---|---|
| Tag List | Tag List
|
Work History
Secrets Manager list page allows you to view the operation history of the selected resource.
| Category | Detailed description |
|---|---|
| Work Details | Work Execution Content |
| Work date and time | Task execution date and time |
| Resource Type | Resource Type |
| Resource Name | Resource Name |
| Work result | Task execution result (success/failure) |
| Operator Information | Information of the user who performed the task |
Secrets Manager Cancel
You can cancel the unused Secrets Manager.
To cancel Secrets Manager, follow the steps below.
- All Services > Security > Secrets Manager Click the menu. Navigate to the Service Home page of Secrets Manager.
- Click the Secrets Manager menu on the Service Home page. Go to the Secrets Manager List page.
- Secrets Manager List page, click the resource to view detailed information. You will be taken to the Secrets Manager Details page.
- Secrets Manager Details on the page, click the Cancel Service button. You will be taken to the Cancel Service popup.
- Service Termination popup window, enter the cancellation waiting period and click the Confirm button.
- The termination waiting period can be entered within the range of 7 - 30 days.
- Once termination is complete, check on the Secrets Manager list page whether the resource has been terminated.