CMK_BACKING_KEY_ROTATION_ENABLED messages

0

I have created CMK using Terraform. I have enabled key_rotation for this key. I can see that this key is built and rotation is enabled.

However, I am still getting CMK_BACKING_KEY_ROTATION_ENABLED messages. I have checked AWS Config and it lists the newly created key as NON COMPLIANT. Config recorder role has Action [kms: *].... permissions in it

I am not sure why I get Non Compliant messages. Any help to understand this issue is appreciated. thanks

2 réponses
1

Hello,

The trigger type for this rule is periodic, can you check what is the frequency for evaluation set for this rule ? AWS Config runs evaluations for the rule at a frequency that you choose; for example, every 24 hours.

Thanks Shekhar S

AWS
répondu il y a 6 mois
0

I stopped getting this alert once I manually run AWS Config

QAS
répondu il y a 5 mois

Vous n'êtes pas connecté. Se connecter pour publier une réponse.

Une bonne réponse répond clairement à la question, contient des commentaires constructifs et encourage le développement professionnel de la personne qui pose la question.

Instructions pour répondre aux questions