

# bedrock-agentcore-memory-encryption-enabled
<a name="bedrock-agentcore-memory-encryption-enabled"></a>

Checks whether Amazon Bedrock AgentCore Memory uses customer-managed KMS key for encryption. The rule is NON\$1COMPLIANT if AgentCore Memory does not have EncryptionKeyArn configured. 



**Identifier:** BEDROCK\$1AGENTCORE\$1MEMORY\$1ENCRYPTION\$1ENABLED

**Resource Types:** AWS::BedrockAgentCore::Memory

**Trigger type:** Configuration changes

**AWS Region:** Only available in Asia Pacific (Mumbai), US East (Ohio), Europe (Ireland), Europe (Frankfurt), US East (N. Virginia), Asia Pacific (Tokyo), Asia Pacific (Singapore), Asia Pacific (Sydney) Region

**Parameters:**

None  

## AWS CloudFormation template
<a name="w2aac20c16c17b7d281c19"></a>

To create AWS Config managed rules with AWS CloudFormation templates, see [Creating AWS Config Managed Rules With AWS CloudFormation Templates](aws-config-managed-rules-cloudformation-templates.md).