aws / aws/amazon-s3-encryption-client-python

Fixup the KmsKeyring spec to prefer GDK

未关闭
#145 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
主要语言
Python
星标
2
派生
4
PR 合并指标
30 天内没有已合并 PR

描述

See https://github.com/aws/amazon-s3-encryption-client-python/pull/143 and the exceptions added there.
The spec was written to imply Encrypt is the preferred KMS API, but it should be GDK first,
and only (maybe/should) use Encrypt when the Materials already have an existing data key.

贡献指南

打开贡献指南

调研方向

从 KmsKeyring 规范开始,将其预期行为与 pull request 143 中添加的例外进行比较。更新规范,使其优先使用 GDK,仅当 Materials 已包含现有数据密钥时才使用 Encrypt,并通过相关规范测试确认预期行为。

由索引模型根据 Issue 内容生成。

评估

技术栈
aws, python
领域
cloud, security
Issue 类型
缺陷
难度
3/5
预计耗时
1-2 天
活跃度
停滞
描述清晰度
基本清楚
新手友好度
45/100

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。