in reply to Re: OT: Storing encryption keys securely
in thread OT: Storing encryption keys securely

All of which misses the point. If a client is compromised, an attacker can use its credentials to request any key he wants from the KMS.
  • Comment on Re^2: OT: Storing encryption keys securely