bedrock-agentcore-memory-encryption-enabled
Checks whether Amazon Bedrock AgentCore Memory uses customer-managed KMS key for encryption. The rule is NON_COMPLIANT if AgentCore Memory does not have EncryptionKeyArn configured.
Identifier: BEDROCK_AGENTCORE_MEMORY_ENCRYPTION_ENABLED
Resource Types: AWS::BedrockAgentCore::Memory
Trigger type: Configuration changes
AWS Region: Only available in Asia Pacific (Mumbai), US East (Ohio), Europe (Ireland), Europe (Frankfurt), US East (N. Virginia), Asia Pacific (Tokyo), Asia Pacific (Singapore), Asia Pacific (Sydney) Region
Parameters:
- None
AWS CloudFormation template
To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.