The documentation from here says that a KMS key arn can be used for the private-key and this documentation says how to generate a signing-certificate from a local private-key. But what is the process for generating the signing certificate when using a KMS key for the private key?
Is this feature only supported for customer managed keys CMK, where we already have access to the private-key?
The documentation from here says that a KMS key arn can be used for the private-key and this documentation says how to generate a signing-certificate from a local private-key. But what is the process for generating the signing certificate when using a KMS key for the private key?
Is this feature only supported for customer managed keys CMK, where we already have access to the private-key?