Encryption in Transit - Amazon AppStream 2.0

Encryption in Transit

The following table provides information about how data is encrypted in transit. Where applicable, other data protection methods for AppStream 2.0 are also listed.

Data Network path How protected

Web assets

This traffic includes assets such as images and JavaScript files.

Between AppStream 2.0 users and AppStream 2.0

Encrypted using TLS 1.2
Pixel and related streaming traffic Between AppStream 2.0 users and AppStream 2.0

Encrypted using 256-bit Advanced Encryption Standard (AES-256)

Transported using TLS 1.2

API traffic Between AppStream 2.0 users and AppStream 2.0

Encrypted using TLS 1.2

Requests to create a connection are signed using SigV4

Application settings and home folder data generated by users

Applicable when application settings persistence and home folders are enabled.

Between AppStream 2.0 users and Amazon S3 Encrypted using Amazon S3 SSL endpoints
AppStream 2.0-managed traffic

Between AppStream 2.0 streaming instances and:

  • AppStream 2.0 management services

  • AWS services and resources in your Amazon Web Services account

  • Non-AWS services and resources (such as Google Drive and Microsoft OneDrive)

Encrypted using TLS 1.2

Requests to create a connection are signed using SigV4 where applicable