[ProtectionLevel][google.cloud.kms.v1.ProtectionLevel] specifies how
cryptographic operations are performed. For more information, see Protection
levels.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-07 UTC."],[[["\u003cp\u003eThis webpage details the \u003ccode\u003eProtectionLevel\u003c/code\u003e enum within the \u003ccode\u003eGoogle.Cloud.Kms.V1\u003c/code\u003e namespace, specifying how cryptographic operations are executed.\u003c/p\u003e\n"],["\u003cp\u003eThe latest version of the \u003ccode\u003eProtectionLevel\u003c/code\u003e enum documentation is 3.16.0, with various previous versions, starting from 2.2.0 up until 3.15.0, also being accessible through this page.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eProtectionLevel\u003c/code\u003e enum has 5 fields: \u003ccode\u003eExternal\u003c/code\u003e, \u003ccode\u003eExternalVpc\u003c/code\u003e, \u003ccode\u003eHsm\u003c/code\u003e, \u003ccode\u003eSoftware\u003c/code\u003e, and \u003ccode\u003eUnspecified\u003c/code\u003e, which corresponds to different methods of encryption handling.\u003c/p\u003e\n"],["\u003cp\u003eCryptographic operations are performed in software, in a Hardware Security Module, by an external key manager, or in an EKM-over-VPC backend based on the chosen \u003ccode\u003eProtectionLevel\u003c/code\u003e.\u003c/p\u003e\n"]]],[],null,[]]