Hacker News new | ask | show | jobs
by crionuke 28 days ago
i did this with aws kms. i had a root key that encrypted & decrypted data keys, which were unique for each customer. those data keys then encrypted & decrypted sensitive customer info. so called envelope encryption