View a markdown version of this page

AWS::EKS::Cluster EncryptionConfig - AWS CloudFormation

This is the new CloudFormation Template Reference Guide. Please update your bookmarks and links. For help getting started with CloudFormation, see the AWS CloudFormation User Guide.

AWS::EKS::Cluster EncryptionConfig

The encryption configuration for the cluster.

Syntax

To declare this entity in your CloudFormation template, use the following syntax:

JSON

{ "Provider" : Provider, "Resources" : [ String, ... ] }

YAML

Provider: Provider Resources: - String

Properties

Provider

The encryption provider for the cluster.

Required: No

Type: Provider

Update requires: Replacement

Resources
Important

Amazon EKS encrypts all Kubernetes API data with envelope encryption by default for clusters running Kubernetes version 1.28 or higher, so this field no longer affects which resources are encrypted.

Specifies the resources to be encrypted. The only supported value is secrets.

Required: No

Type: Array of String

Update requires: Replacement