[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2024-11-14 UTC."],[[["\u003cp\u003eYou need to choose a Key Management System (KMS) from Google Cloud KMS, Amazon KMS, or HashiCorp Vault (Go only) before proceeding to step 3.\u003c/p\u003e\n"],["\u003cp\u003eThis KMS selection is crucial as it will be used to create a key encryption key (KEK) in a later step to protect your Tink-generated keys.\u003c/p\u003e\n"],["\u003cp\u003eHashiCorp Vault is currently supported as KMS within the Go Tink library only.\u003c/p\u003e\n"]]],["Users must select a Key Management System (KMS) from the available options: Google Cloud KMS, Amazon KMS, or HashiCorp Vault (Go language only). The chosen KMS will be used in a later step to create a key encryption key (KEK). This KEK will provide protection for Tink-generated keys. The setup steps depend on this KMS selection.\n"],null,["As the setup steps in [step 3](/tink/tink-setup) are KMS-dependent, now is the time\nto select which available KMS you want to use:\n\n- [Google Cloud KMS](https://cloud.google.com/kms/docs/)\n- [Amazon KMS](http://docs.aws.amazon.com/kms/)\n- [HashiCorp Vault](https://developer.hashicorp.com/vault/docs/what-is-vault) (currently only available in Go language)\n\n| **Note:** To protect your Tink-generated keys, you'll create a key encryption key (KEK) in [step 5](/tink/key-management-overview#create_kek), which requires the use of the Key Management System (KMS) selected here."]]