![]() ![]() 5 – 11 to determine the encryption configuration for other Windows File Server file systems available in the current region.ġ3 Change the AWS region from the console navigation bar and repeat the audit process for other regions.Ġ3 In the left navigation panel click Encryption Keys.Ġ4 Select the appropriate AWS region from the Filter menu (must match the region where your non-compliant file system is provisioned).Ġ5 Click Create Key button from the dashboard top menu.Ġ6 In the Alias (required) and Description fields, enter a unique name (alias) and a description for the new CMK, then click the Next Step button.Ġ7 Under Key Administrators section, select which IAM users and/or roles can administer the new CMK, then click Next Step.Ġ8 Under This Account section, select which IAM users and/or roles can use the new CMK to encrypt/decrypt your FSx data with the AWS KMS API.Ġ9 (Optional) Under External Accounts section, click Add an External Account and enter an external account ID in order to add another AWS account that can use this CMK to encrypt/decrypt your file system data. 6 match, the selected Amazon FSx Windows File Server file system is encrypting data using the AWS-managed key instead of a customer-managed CMK.ġ2 Repeat steps no. If the aws/fsx key ARN and the ARN identified at step no. key ARN).Ġ8 In the left navigation panel, click Encryption Keys.Ġ9 Select the appropriate AWS region from the Filter menu (must match the region where your file system was created).ġ0 Choose the KMS key with the alias set to aws/fsx, then click on its name link to access the key details.ġ1 On the selected KMS key configuration page, under Summary, check the key Amazon Resource Name (ARN) listed as value for the ARN attribute. ![]() Ġ3 In the left navigation panel, under Amazon FSx, choose File systems to access the file systems available in the current region.Ġ4 Click on the File system type column to group the existent file systems based on their type (Windows File Server or Lustre).Ġ5 Choose the Windows File Server file system that you want to examine, click the Actions dropdown button from the dashboard top menu and select View details.Ġ6 On the file system description page, select Network & Security tab, and copy the KMS key ID attribute value (i.e. 02 Navigate to Amazon FSx service dashboard at. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |