How can we improve Google Cloud Platform?

Add a parameter/metadata store to KMS

To securely store configuration using GCP tools, one needs to

1. Store them in a file
2. Encrypt that with KMS
3. Store that file in GCS
4. At runtime download that file
5. Decrypt it

It would be great if there was a way to store small secrets directly in KMS so that we don't need to go through the intermediate step of GCS ourselves.

28 votes
Vote
Sign in
(thinking…)
Sign in with: Facebook Google
Signed in as (Sign out)
You have left! (?) (thinking…)
Daniel Compton shared this idea  ·   ·  Flag idea as inappropriate…  ·  Admin →

2 comments

Sign in
(thinking…)
Sign in with: Facebook Google
Signed in as (Sign out)
Submitting...
  • Anonymous commented  ·   ·  Flag as inappropriate

    Has there been any progress on this yet please? Is there anything you need from the community to help make this happen?

  • Pavel Lechev commented  ·   ·  Flag as inappropriate

    Has there been any progress with this?
    AWS offers a System Manager with Parameter Store where scalars can be stored as plain text or encrypted and can be made available directly to the EC2 at runtime.
    Surprisingly, GCP does not appear to have similar facility.
    Thanks
    Pav

Feedback and Knowledge Base