AWS::Forecast::Dataset EncryptionConfig
An AWS Key Management Service (KMS) key and an AWS Identity and Access Management (IAM) role that Amazon Forecast can assume to access the key. You can specify this optional object in the CreateDataset and CreatePredictor requests.
Syntax
To declare this entity in your AWS CloudFormation template, use the following syntax:
Properties
KmsKeyArn
-
The Amazon Resource Name (ARN) of the KMS key.
Required: No
Type: String
Pattern:
arn:aws[-a-z]*:kms:.*:key/.*
Maximum:
256
Update requires: No interruption
RoleArn
-
The ARN of the IAM role that Amazon Forecast can assume to access the AWS KMS key.
Passing a role across AWS accounts is not allowed. If you pass a role that isn't in your account, you get an
InvalidInputException
error.Required: No
Type: String
Pattern:
^[a-zA-Z0-9\-\_\.\/\:]+$
Maximum:
256
Update requires: No interruption