Skip to content

Compatible with account required

Google Cloud KMS / HSM

Google Cloud KMS / HSM: CryptoKey encrypt/decrypt for envelope encryption, including HSM-backed keys.

Verification: test_verified. Connection: unknown. Credentials: none. Live E2E: no.

Google Cloud KMS / HSM credentials are not configured.

What sslcertificates.io can do

Google Cloud KMS / HSM: CryptoKey encrypt/decrypt for envelope encryption, including HSM-backed keys. Capabilities: discover, write, read_back, rotate, delete_test. Authentication uses token.

Required permissions

cloudkms.cryptoKeyVersions.useToEncrypt

Setup

Open Dashboard → Integrations → Google Cloud KMS / HSM. Enter the credentials described on this page. Values are encrypted at rest and never shown again. Run Test connection. Discovery runs only after authentication succeeds. Select a discovered resource. Do not paste opaque IDs unless the provider cannot enumerate them. Perform the certificate or notification action, then confirm the external system matches. Disconnect removes stored credentials and owned test resources created by sslcertificates.io.

Known limitations

Secret values are never returned to the UI after save. Test artifacts are deleted.

Official sources

Fact checked 2026-09-20. https://docs.aws.amazon.com/secretsmanager/ Google Cloud KMS / HSM is a trademark of its owner. sslcertificates.io is not a partner or certified reseller unless a written agreement exists.

Capabilities

discover write read_back rotate delete_test

Connect

Create an account to connect

Google Cloud KMS / HSM is a trademark of its owner. sslcertificates.io is not a partner or certified reseller unless a written agreement exists.