/AWS1/CL_SSAENCCONFDETAILS¶
The encryption configuration of your IAM Identity Center instance, including the key type, KMS key ARN, and current encryption status.
CONSTRUCTOR¶
IMPORTING¶
Optional arguments:¶
iv_keytype TYPE /AWS1/SSAKMSKEYTYPE /AWS1/SSAKMSKEYTYPE¶
The type of KMS key used for encryption.
iv_kmskeyarn TYPE /AWS1/SSAKMSKEYARN /AWS1/SSAKMSKEYARN¶
The ARN of the KMS key currently used to encrypt data in your IAM Identity Center instance.
iv_encryptionstatus TYPE /AWS1/SSAKMSKEYSTATUS /AWS1/SSAKMSKEYSTATUS¶
The current status of encryption configuration.
iv_encryptionstatusreason TYPE /AWS1/SSAREASON /AWS1/SSAREASON¶
Provides additional context about the current encryption status. This field is particularly useful when the encryption status is UPDATE_FAILED. When encryption configuration update fails, this field contains information about the cause, which may include KMS key access issues, key not found errors, invalid key configuration, key in an invalid state, or a disabled key.
Queryable Attributes¶
KeyType¶
The type of KMS key used for encryption.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_KEYTYPE() |
Getter for KEYTYPE, with configurable default |
ASK_KEYTYPE() |
Getter for KEYTYPE w/ exceptions if field has no value |
HAS_KEYTYPE() |
Determine if KEYTYPE has a value |
KmsKeyArn¶
The ARN of the KMS key currently used to encrypt data in your IAM Identity Center instance.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_KMSKEYARN() |
Getter for KMSKEYARN, with configurable default |
ASK_KMSKEYARN() |
Getter for KMSKEYARN w/ exceptions if field has no value |
HAS_KMSKEYARN() |
Determine if KMSKEYARN has a value |
EncryptionStatus¶
The current status of encryption configuration.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_ENCRYPTIONSTATUS() |
Getter for ENCRYPTIONSTATUS, with configurable default |
ASK_ENCRYPTIONSTATUS() |
Getter for ENCRYPTIONSTATUS w/ exceptions if field has no va |
HAS_ENCRYPTIONSTATUS() |
Determine if ENCRYPTIONSTATUS has a value |
EncryptionStatusReason¶
Provides additional context about the current encryption status. This field is particularly useful when the encryption status is UPDATE_FAILED. When encryption configuration update fails, this field contains information about the cause, which may include KMS key access issues, key not found errors, invalid key configuration, key in an invalid state, or a disabled key.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_ENCRYPTIONSTATUSREASON() |
Getter for ENCRYPTIONSTATUSREASON, with configurable default |
ASK_ENCRYPTIONSTATUSREASON() |
Getter for ENCRYPTIONSTATUSREASON w/ exceptions if field has |
HAS_ENCRYPTIONSTATUSREASON() |
Determine if ENCRYPTIONSTATUSREASON has a value |