1 Answer
- Newest
- Most votes
- Most comments
0
Hi, I was able to get the KeyRotationStatus on a aws-managed kms key.
Make sure that the user/role used by the JAVA AP is in the same region as the KMS managed key, and that it really has enough permissions. You should then be able to run the following:
$aws kms list-keys
{
"Keys": [
{
"KeyId": "e1xxxxx-e6xx-45xx-xxxx-xxxxxxxxxxxxx",
"KeyArn": "arn:aws:kms:us-west-2:000000000000:key/e1xxxxx-e6xx-45xx-xxxx-xxxxxxxxxxxxx"
}
]
}
followed by
$ aws kms get-key-rotation-status --key-id e1xxxxx-e6xx-45xx-xxxx-xxxxxxxxxxxxx
{
"KeyRotationEnabled": true
}
That key id belongs to an aws-managed KMS key (aws/sns)
Hope this helps.
answered 2 years ago
Relevant content
- Accepted Answerasked 2 years ago
- asked a year ago
- AWS OFFICIALUpdated 21 days ago
- AWS OFFICIALUpdated 2 years ago
I have the exactly same problem, also with aws/acm. The below answer doesn't help me.