AWS::MSK::Cluster ClientAuthentication - Amazon CloudFormation
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

AWS::MSK::Cluster ClientAuthentication

Includes all client authentication information.

Syntax

To declare this entity in your Amazon CloudFormation template, use the following syntax:

Properties

Sasl

Details for client authentication using SASL. To turn on SASL, you must also turn on EncryptionInTransit by setting inCluster to true. You must set clientBroker to either TLS or TLS_PLAINTEXT. If you choose TLS_PLAINTEXT, then you must also set unauthenticated to true.

Required: No

Type: Sasl

Update requires: No interruption

Tls

Details for ClientAuthentication using TLS. To turn on TLS access control, you must also turn on EncryptionInTransit by setting inCluster to true and clientBroker to TLS.

Required: No

Type: Tls

Update requires: No interruption

Unauthenticated

Details for ClientAuthentication using no authentication.

Required: No

Type: Unauthenticated

Update requires: No interruption