List key algorithms supported by a CSP. See below for the options supported by CSP commands.

<name>

Name to assign to a new CSP.

<group>

Group associated with the new CSP.

--name

Select an existing CSP by name.

--guid

Select an existing CSP by GUID.

--csp_type

CSP provider type: AWS, AZURE, GCP, OCI, or SFDC.

--description

Optional human-readable description.

--aws_access_key_id

AWS access key ID.

--aws_secret_access_key

Secret access key corresponding to the AWS access key ID.

--default_region

Default AWS region used for CSP operations.

--azure_tenant_id

Azure tenant ID.

--azure_subscription_id

Azure subscription ID.

--azure_client_id

Client ID of the Azure application used for authentication.

--azure_application_objectid

Object ID of the Azure application.

--azure_client_secret

Client secret for the Azure application.

--use_cert_auth

Enable or disable certificate-based Azure authentication.

--generate_new_cert

Specify whether to generate a new certificate when updating the Azure CSP.

--self_sign_cert

Specify whether the certificate should be self-signed.

--cert_expiry

Certificate validity period in days.

--common_name

Common name to use for the certificate.

--signed_cert_file

Path to the signed certificate file.

--private_key_file

Path to the private key file.

--passphrase

Passphrase used to protect the private key.

--gcp_key_file

Path to the GCP key file.

--ekm_uri

URI for the GCP EKM configuration.

--ekm_service_account

Service account used for the GCP EKM configuration.

--oci_user_ocid

OCI user OCID.

--oci_fingerprint

Fingerprint associated with the OCI signing key.

--oci_key_content

OCI API signing key content.

--oci_key_passphrase

Passphrase for the OCI API signing key.

--oci_tenancy_ocid

OCI tenancy OCID.

--oci_bucket

OCI bucket used by the configuration.

--oci_storage_namespace

OCI object storage namespace.

--sfdc_client_id

Salesforce client ID.

--sfdc_client_secret

Salesforce client secret.

--sfdc_domain

Salesforce domain.

--sfdc_wrapping_cert

Certificate used for Salesforce key wrapping.

--sfdc_named_credential

Salesforce named credential.

--access_key_rotation_interval

Access-key rotation interval in days.

--sync

Specify whether keyring synchronization is requested: yes or no.

--location

Location used when listing EKM connections.

--in

Input filename for a KAJ policy or EKM ACL data.