How-to guides
Users can create the service by entering the required information for the Secrets Manager service through the Samsung Cloud Platform Console and selecting detailed options.
Create Secrets Manager
You can create and use Secrets Manager in the Samsung Cloud Platform Console.
To create a Secrets Manager, follow these steps.
Click the All Services > Security > Secrets Manager menu. 1. Go to the Service Home page of Secrets Manager.
On the Service Home page, click the Create Secrets Manager button. 2. Navigate to the Create Secrets Manager page.
Create Secrets Manager page, enter the information required to create the service and input additional details.
- Enter or select the required information in the Service Information Input area.Categoryrequired status
Detailed description Secret name Required Enter the secret name type Required Select the type to manage encrypted with Secret from the list. Key/Value input Required Enter a pair of Key/Value for Secret information - Click the Add button to add up to 10 entries
- Click the X icon to delete the entry
encryption key Essential Select the KMS key from the list to encrypt the Secret - Select a key created in the KMS service from the list. Or click +Create New to create a KMS key
- Only KMS keys for encryption/decryption can be selected. The selectable encryption/decryption KMS key types are encryption/decryption (AES-256), encryption/decryption and signing/verification (RSA-2048), and encryption/decryption (ARIA) – three types.
- When entering Key/Value, input must be within 64 KB; registration is not allowed if the size exceeds this limit.
- For detailed information on creating KMS keys, see KMS 키 생성하기 for reference
Public access control Required Enter public access allowed IP - After entering the IP address, click the Add button to register up to 10 entries
- Click the Delete All button to remove all IP entries from the list
- You can register the 0.0.0.0/24 - 0.0.0.0/32 range, but it may be insecure
Private access control Selection Use After selecting, select the resource to allow private access - Click the Add button to add an access‑allowed resource
- If the setting is not enabled, access is allowed for all subnet resources in the same region
Explanation Selection Enter description for Secrets Manager Table. Secrets Manager service information input items - Enter or select the required information in the Additional Information Input area.
Category required statusDetailed description tag Selection Add Tag - Up to 50 per resource can be added
- After clicking the Add Tag button, input or select Key, Value values
Table. Secrets Manager additional information input fields
- Enter or select the required information in the Service Information Input area.
Summary Check the detailed information and estimated charges generated in the panel, and click the Create button.
- Once creation is complete, verify the created resource on the Secrets Manager list page.
Check Secrets Manager detailed information
Secrets Manager can view and edit the complete list of resources and detailed information. Secrets Manager Details page consists of Details, Versions, Tags, Activity History tabs.
To view detailed information about Secrets Manager, follow these steps.
- All Services > Security > Secrets Manager Click the menu. 1. Go to the Service Home page of Secrets Manager.
- On the Service Home page, click the Secrets Manager menu. 2. Go to the Secrets Manager List page.
- On the Secrets Manager List page, click the resource to view its details. 3. Go to the Secrets Manager Details page.
- Secrets Manager Details At the top of the page, status information and descriptions of additional features are displayed.
Category Detailed description status Display the status of Secrets Manager - Active: available/enabled
- To be terminated: scheduled for deletion
Service termination Cancel Service button Table. Secrets Manager status information and additional features
- Secrets Manager Details At the top of the page, status information and descriptions of additional features are displayed.
Detailed Information
Secrets Manager list page allows you to view detailed information of the selected resource and edit the information if necessary.
Category | Detailed description |
|---|---|
| service | Service name |
| Resource Type | Resource Type |
| SRN | Unique resource ID in Samsung Cloud Platform |
| Resource name | Resource Name |
| Resource ID | Unique resource ID in the service |
| Constructor | User who created the service |
| Creation date and time | Service creation date and time |
| Modifier | User who modified the service |
| Modification date | Service modification date and time |
| Secret name | Name of the generated Secret |
| Secret value | the entered Secret value
|
| type | Type of the generated Secret |
| Recent search date and time | Last retrieval time of the generated Secret |
| encryption key | Display the KMS key name selected by the user
|
| URL | Public/Private URL information display
|
| Public access control | Display the registered public access allowed IP
|
| Private access control | Display registered private access allowed resources
|
| Explanation | Display additional description for Secret
|
Version
Secrets Manager list page allows you to use labels to track the version of the selected Secret.
Refer to the definition of each item when checking the version information of Secret Manager.
- Secret: logical unit that stores sensitive (important) information
- Version: A snapshot of unique data generated each time a Secret is modified (the unit that stores the actual value of the Secret)
- Label: a nameplate or tag attached to a specific version of a Secret (a pointer for referencing a specific version)
| Category | Detailed description |
|---|---|
| Version ID | Current version, previous version, and the ID of the version with a custom label (Custom Label) displayed
|
| Label | Secret version display
|
| Last access time | Secret’s most recent access time |
| Creation date and time | Secret creation timestamp |
The limitations when using a version of Secret are as follows.
- You can store up to 100 versions per Secret. * Regardless of whether a custom label is set, if the number of versions exceeds 100, the oldest versions are deleted first.
- For important versions with custom labels, create a new Secret before the version is deleted due to quota limits, and configure it so that the running application can reference the new Secret.
Tag
Secrets Manager list page allows you to view the tag information of the selected resource, and to add, modify, or delete it.
| Category | Detailed description |
|---|---|
| Tag list | Tag list
|
Job History
Secrets Manager list page lets you view the operation history of the selected resource.
| Category | Detailed description |
|---|---|
| Work history | Task execution details |
| Work Date/Time | Task execution date and time |
| Resource Type | Resource Type |
| Resource name | Resource Name |
| Operation result | Task execution result (success/failure) |
| Operator Information | User information of the person who performed the task |
Terminate Secrets Manager
You can cancel Secrets Manager that you are not using.
To cancel Secrets Manager, follow the steps below.
- All Services > Security > Secrets Manager Click the menu. 1. Go to the Service Home page of Secrets Manager.
- On the Service Home page, click the Secrets Manager menu. 2. Go to the Secrets Manager List page.
- On the Secrets Manager List page, click the resource to view its details. 3. Go to the Secrets Manager Details page.
- On the Secrets Manager Details page, click the Cancel Service button. 4. Service Cancellation popup will be opened.
- Service Cancellation in the popup window, enter the cancellation waiting period, and click the Confirm button.
- The termination waiting period can be entered within a range of 7 to 30 days.
- After termination is complete, check on the Secrets Manager List page whether the resource has been terminated.