Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Amazon S3 Bucket Keys #16536

Closed
ewbankkit opened this issue Dec 2, 2020 · 1 comment · Fixed by #16581
Closed

Amazon S3 Bucket Keys #16536

ewbankkit opened this issue Dec 2, 2020 · 1 comment · Fixed by #16581
Assignees
Labels
enhancement Requests to existing resources that expand the functionality or scope. service/kms Issues and PRs that pertain to the kms service. service/s3 Issues and PRs that pertain to the s3 service.

Comments

@ewbankkit
Copy link
Contributor

ewbankkit commented Dec 2, 2020

Community Note

  • Please vote on this issue by adding a 👍 reaction to the original issue to help the community and maintainers prioritize this request
  • Please do not leave "+1" or other comments that do not add relevant new information or questions, they generate extra noise for issue followers and do not help prioritize the request
  • If you are interested in working on this issue or have submitted a pull request, please leave a comment

Description

Amazon S3 Bucket Keys reduce the request costs of Amazon S3 server-side encryption (SSE) with AWS Key Management Service (KMS).

New or Affected Resource(s)

Potential Terraform Configuration

resource "aws_kms_key" "example" {
  description             = "This key is used to encrypt bucket objects"
  deletion_window_in_days = 10
}

resource "aws_s3_bucket" "example" {
  bucket = "example"

  server_side_encryption_configuration {
    rule {
      apply_server_side_encryption_by_default {
        kms_master_key_id = aws_kms_key.example.arn
        sse_algorithm     = "aws:kms"
      }

      bucket_key_enabled = true
    }
  }
}

References

Announcement.
Developer Guide.

@ewbankkit ewbankkit added the enhancement Requests to existing resources that expand the functionality or scope. label Dec 2, 2020
@ghost ghost added service/kms Issues and PRs that pertain to the kms service. service/s3 Issues and PRs that pertain to the s3 service. labels Dec 2, 2020
@ewbankkit ewbankkit removed the service/kms Issues and PRs that pertain to the kms service. label Dec 2, 2020
@ghost ghost added the service/kms Issues and PRs that pertain to the kms service. label Dec 2, 2020
@ewbankkit ewbankkit removed the service/kms Issues and PRs that pertain to the kms service. label Dec 2, 2020
@ghost ghost added the service/kms Issues and PRs that pertain to the kms service. label Dec 2, 2020
@ewbankkit ewbankkit removed the service/kms Issues and PRs that pertain to the kms service. label Dec 2, 2020
@ghost ghost added the service/kms Issues and PRs that pertain to the kms service. label Feb 2, 2021
@bflad bflad self-assigned this Mar 31, 2021
@bflad bflad linked a pull request Mar 31, 2021 that will close this issue
@ghost
Copy link

ghost commented May 3, 2021

I'm going to lock this issue because it has been closed for 30 days ⏳. This helps our maintainers find and focus on the active issues.

If you feel this issue should be reopened, we encourage creating a new issue linking back to this one for added context. Thanks!

@ghost ghost locked as resolved and limited conversation to collaborators May 3, 2021
# for free to subscribe to this conversation on GitHub. Already have an account? #.
Labels
enhancement Requests to existing resources that expand the functionality or scope. service/kms Issues and PRs that pertain to the kms service. service/s3 Issues and PRs that pertain to the s3 service.
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants