The encryption configuration for the cluster.
Key Management Service (KMS) key. Either the ARN or the alias can be used.
Amazon EKS encrypts all Kubernetes API data with envelope encryption by default for clusters running Kubernetes version 1.28 or higher, so this field no longer affects which resources are encrypted.