Skip to content

/AWS1/CL_SSAENCCONFDETAILS

The encryption configuration of your IAM Identity Center instance, including the key type, KMS key ARN, and current encryption status.

CONSTRUCTOR

IMPORTING

Optional arguments:

iv_keytype TYPE /AWS1/SSAKMSKEYTYPE /AWS1/SSAKMSKEYTYPE

The type of KMS key used for encryption.

iv_kmskeyarn TYPE /AWS1/SSAKMSKEYARN /AWS1/SSAKMSKEYARN

The ARN of the KMS key currently used to encrypt data in your IAM Identity Center instance.

iv_encryptionstatus TYPE /AWS1/SSAKMSKEYSTATUS /AWS1/SSAKMSKEYSTATUS

The current status of encryption configuration.

iv_encryptionstatusreason TYPE /AWS1/SSAREASON /AWS1/SSAREASON

Provides additional context about the current encryption status. This field is particularly useful when the encryption status is UPDATE_FAILED. When encryption configuration update fails, this field contains information about the cause, which may include KMS key access issues, key not found errors, invalid key configuration, key in an invalid state, or a disabled key.


Queryable Attributes

KeyType

The type of KMS key used for encryption.

Accessible with the following methods

Method Description
GET_KEYTYPE() Getter for KEYTYPE, with configurable default
ASK_KEYTYPE() Getter for KEYTYPE w/ exceptions if field has no value
HAS_KEYTYPE() Determine if KEYTYPE has a value

KmsKeyArn

The ARN of the KMS key currently used to encrypt data in your IAM Identity Center instance.

Accessible with the following methods

Method Description
GET_KMSKEYARN() Getter for KMSKEYARN, with configurable default
ASK_KMSKEYARN() Getter for KMSKEYARN w/ exceptions if field has no value
HAS_KMSKEYARN() Determine if KMSKEYARN has a value

EncryptionStatus

The current status of encryption configuration.

Accessible with the following methods

Method Description
GET_ENCRYPTIONSTATUS() Getter for ENCRYPTIONSTATUS, with configurable default
ASK_ENCRYPTIONSTATUS() Getter for ENCRYPTIONSTATUS w/ exceptions if field has no va
HAS_ENCRYPTIONSTATUS() Determine if ENCRYPTIONSTATUS has a value

EncryptionStatusReason

Provides additional context about the current encryption status. This field is particularly useful when the encryption status is UPDATE_FAILED. When encryption configuration update fails, this field contains information about the cause, which may include KMS key access issues, key not found errors, invalid key configuration, key in an invalid state, or a disabled key.

Accessible with the following methods

Method Description
GET_ENCRYPTIONSTATUSREASON() Getter for ENCRYPTIONSTATUSREASON, with configurable default
ASK_ENCRYPTIONSTATUSREASON() Getter for ENCRYPTIONSTATUSREASON w/ exceptions if field has
HAS_ENCRYPTIONSTATUSREASON() Determine if ENCRYPTIONSTATUSREASON has a value