interface IEncryptedResource
| Language | Type name |
|---|---|
.NET | Amazon.CDK.AWS.IAM.IEncryptedResource |
Go | github.com/aws/aws-cdk-go/awscdk/v2/awsiam#IEncryptedResource |
Java | software.amazon.awscdk.services.iam.IEncryptedResource |
Python | aws_cdk.aws_iam.IEncryptedResource |
TypeScript (source) | aws-cdk-lib » aws_iam » IEncryptedResource |
Implemented by
Table, Bucket, Topic, Queue, String, String
A resource that contains data that can be encrypted, using a KMS key.
Properties
| Name | Type | Description |
|---|---|---|
| env | Resource | The environment this resource belongs to. |
| node | Node | The tree node. |
| stack | Stack | The stack in which this resource is defined. |
env
Type:
Resource
The environment this resource belongs to.
For resources that are created and managed in a Stack (those created by
creating new class instances like new Role(), new Bucket(), etc.), this
is always the same as the environment of the stack they belong to.
For referenced resources (those obtained from referencing methods like
Role.fromRoleArn(), Bucket.fromBucketName(), etc.), they might be
different than the stack they were imported into.
node
Type:
Node
The tree node.
stack
Type:
Stack
The stack in which this resource is defined.
Methods
| Name | Description |
|---|---|
| apply | Apply the given removal policy to this resource. |
| grant | Gives permissions to a grantable entity to perform actions on the encryption key. |
applyRemovalPolicy(policy)
public applyRemovalPolicy(policy: RemovalPolicy): void
Parameters
- policy
RemovalPolicy
Apply the given removal policy to this resource.
The Removal Policy controls what happens to this resource when it stops being managed by CloudFormation, either because you've removed it from the CDK application or because you've made a change that requires the resource to be replaced.
The resource can be deleted (RemovalPolicy.DESTROY), or left in your AWS
account for data recovery and cleanup later (RemovalPolicy.RETAIN).
grantOnKey(grantee, ...actions)
public grantOnKey(grantee: IGrantable, ...actions: string[]): GrantOnKeyResult
Parameters
- grantee
IGrantable - actions
string
Returns
Gives permissions to a grantable entity to perform actions on the encryption key.

.NET
Go
Java
Python
TypeScript (