Skip to content

setting waiting time of deleting KMS keys

0

Hi everyone. we know that AWS KMS enforces a minimal wait time of seven days when deleting KMS keys. we can specify a waiting period of 7-30 days when scheduling key deletion. except during scheduling key deletion. Can we set it longer than 30 days?

asked 2 years ago654 views
1 Answer
1

Hello.

No, the KMS deletion waiting period cannot be longer than 30 days.
https://docs.aws.amazon.com/kms/latest/developerguide/deleting-keys.html#deleting-keys-how-it-works

Because it is destructive and potentially dangerous to delete a KMS key, AWS KMS requires you to set a waiting period of 7 – 30 days. The default waiting period is 30 days.

If you enter a number greater than 30 days, a message similar to the image below will be output and you will not be able to schedule deletion.
a

EXPERT
answered 2 years ago
EXPERT
reviewed 2 years ago
EXPERT
reviewed 2 years ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.