See below to create an external key store in AWS.
To create an external key store in AWS
From the AWS portal, select Key Management Service (KMS).
In the left pane, select External key stores.
Select Create external key store. The Create external key store screen appears.
In the Custom key store name section, enter the Cryptographic Security Platform Vault node FQDN.
In the Proxy connectivity section, select Public endpoint and enter the Proxy URI endpoint in the following format:
https://<vault_fqdn>In the Proxy configuration section:
Skip the Proxy URI path prefix
- In Enter proxy credentials, type the access key ID copied from CSP Vault.
- In Enter Proxy credential, enter the secret access key copied from Cryptographic Security Platform Vault.
Select Create external key store.