public sealed class KeyVersionSpec : IMessage<CertificateAuthority.Types.KeyVersionSpec>, IEquatable<CertificateAuthority.Types.KeyVersionSpec>, IDeepCloneable<CertificateAuthority.Types.KeyVersionSpec>, IBufferMessage, IMessage
A Cloud KMS key configuration that a [CertificateAuthority][google.cloud.security.privateca.v1.CertificateAuthority] will use.
public CertificateAuthority.Types.SignHashAlgorithm Algorithm { get; set; }
The algorithm to use for creating a managed Cloud KMS key for a for a
simplified experience. All managed keys will be have their
[ProtectionLevel][google.cloud.kms.v1.ProtectionLevel] as HSM.
The resource name for an existing Cloud KMS CryptoKeyVersion in the
format
projects/*/locations/*/keyRings/*/cryptoKeys/*/cryptoKeyVersions/*.
This option enables full flexibility in the key's capabilities and
properties.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-07 UTC."],[[["\u003cp\u003eThis document outlines the \u003ccode\u003eKeyVersionSpec\u003c/code\u003e class, which is used for configuring a Cloud KMS key for a CertificateAuthority in Google Cloud's Private CA service.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eKeyVersionSpec\u003c/code\u003e class implements several interfaces, including \u003ccode\u003eIMessage\u003c/code\u003e, \u003ccode\u003eIEquatable\u003c/code\u003e, \u003ccode\u003eIDeepCloneable\u003c/code\u003e, and \u003ccode\u003eIBufferMessage\u003c/code\u003e, and inherits from \u003ccode\u003eObject\u003c/code\u003e.\u003c/p\u003e\n"],["\u003cp\u003eThe latest version available for documentation is 3.9.0, and this page lists documentation links for versions spanning from 1.0.0 to 3.9.0 of \u003ccode\u003eKeyVersionSpec\u003c/code\u003e.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eKeyVersionSpec\u003c/code\u003e class offers two constructors: a default constructor and one that takes another \u003ccode\u003eKeyVersionSpec\u003c/code\u003e instance as a parameter to allow for easy copy.\u003c/p\u003e\n"],["\u003cp\u003eThe properties \u003ccode\u003eAlgorithm\u003c/code\u003e and \u003ccode\u003eCloudKmsKeyVersion\u003c/code\u003e allow for specifying either a managed key's signing algorithm or an existing Cloud KMS CryptoKeyVersion resource name.\u003c/p\u003e\n"]]],[],null,[]]