AWS::DynamoDB::GlobalTable ReplicaSSESpecification - Amazon CloudFormation
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

AWS::DynamoDB::GlobalTable ReplicaSSESpecification

Allows you to specify a KMS key identifier to be used for server-side encryption. The key can be specified via ARN, key ID, or alias. The key must be created in the same region as the replica.

Syntax

To declare this entity in your Amazon CloudFormation template, use the following syntax:

JSON

{ "KMSMasterKeyId" : String }

YAML

KMSMasterKeyId: String

Properties

KMSMasterKeyId

The Amazon KMS key that should be used for the Amazon KMS encryption. To specify a key, use its key ID, Amazon Resource Name (ARN), alias name, or alias ARN. Note that you should only provide this parameter if the key is different from the default DynamoDB key alias/aws/dynamodb.

Required: Yes

Type: String

Update requires: No interruption