Hacker News new | ask | show | jobs
by 15characterlimi 4371 days ago
I just recently got this email from AWS:

Dear Amazon S3 Customer,

Amazon S3 now supports server side encryption with customer-provided keys (SSE-C), a new encryption option for Amazon S3. When using SSE-C, Amazon S3 encrypts your objects with the custom encryption keys that you provide. Since Amazon S3 performs the encryption for you, you get the benefits of using your encryption keys without the cost of writing or executing your own encryption code.

1 comments

Wait. how exactly do you transfer the encryption key to amazon?

And do they keep your key?

How long?

Presumably another key?

Look, it's keys all the way down.

Beneath that, wiretaps.