Method: instances.getShieldedInstanceIdentity

Returns the Shielded Instance Identity of an instance

HTTP request

GET https://compute.googleapis.com/compute/v1/projects/{project}/zones/{zone}/instances/{resourceId}/getShieldedInstanceIdentity

The URL uses gRPC Transcoding syntax.

Path parameters

Parameters
project

string

Project ID for this request.

zone

string

The name of the zone for this request.

resourceId

string

Name or id of the instance scoping this request.

Request body

The request body must be empty.

Response body

If successful, the response body contains data with the following structure:

A Shielded Instance Identity.

JSON representation
{
  "signingKey": {
    "ekCert": string,
    "ekPub": string
  },
  "encryptionKey": {
    "ekCert": string,
    "ekPub": string
  },
  "kind": string
}
Fields
signingKey

object

An Attestation Key (AK) made by the RSA 2048 algorithm issued to the Shielded Instance's vTPM.

signingKey.ekCert

string

A PEM-encoded X.509 certificate. This field can be empty.

signingKey.ekPub

string

A PEM-encoded public key.