CMK_BACKING_KEY_ROTATION_ENABLED messages

0

I have created CMK using Terraform. I have enabled key_rotation for this key. I can see that this key is built and rotation is enabled.

However, I am still getting CMK_BACKING_KEY_ROTATION_ENABLED messages. I have checked AWS Config and it lists the newly created key as NON COMPLIANT. Config recorder role has Action [kms: *].... permissions in it

I am not sure why I get Non Compliant messages. Any help to understand this issue is appreciated. thanks

2 Antworten
1

Hello,

The trigger type for this rule is periodic, can you check what is the frequency for evaluation set for this rule ? AWS Config runs evaluations for the rule at a frequency that you choose; for example, every 24 hours.

Thanks Shekhar S

AWS
beantwortet vor 6 Monaten
0

I stopped getting this alert once I manually run AWS Config

QAS
beantwortet vor 5 Monaten

Du bist nicht angemeldet. Anmelden um eine Antwort zu veröffentlichen.

Eine gute Antwort beantwortet die Frage klar, gibt konstruktives Feedback und fördert die berufliche Weiterentwicklung des Fragenstellers.

Richtlinien für die Beantwortung von Fragen