Keep a CA's key in AWS KMS
Keep a root CA's private key in AWS KMS: configure a key-store CA, adopt an existing KMS key, issue intermediates for site-side issuance, and plan for disaster recovery.
Keep a root CA's private key in AWS KMS: configure a key-store CA, adopt an existing KMS key, issue intermediates for site-side issuance, and plan for disaster recovery.