CMK_BACKING_KEY_ROTATION_ENABLED messages

0

I have created CMK using Terraform. I have enabled key_rotation for this key. I can see that this key is built and rotation is enabled.

However, I am still getting CMK_BACKING_KEY_ROTATION_ENABLED messages. I have checked AWS Config and it lists the newly created key as NON COMPLIANT. Config recorder role has Action [kms: *].... permissions in it

I am not sure why I get Non Compliant messages. Any help to understand this issue is appreciated. thanks

2 Answers
1

Hello,

The trigger type for this rule is periodic, can you check what is the frequency for evaluation set for this rule ? AWS Config runs evaluations for the rule at a frequency that you choose; for example, every 24 hours.

Thanks Shekhar S

AWS
answered 5 months ago
0

I stopped getting this alert once I manually run AWS Config

QAS
answered 5 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions