Kinesis Data Streams server-side encryption

Server Side Encryption is a feature of Amazon Kinesis Data Streams This feature is in use your data to be specified AWS KMS client master key (CMK) before the static data is automatically encrypt data. Kinesis stream before writing the data storage layer encryption, decryption and retrieved from the memory after. Therefore, the data is still encrypted Kinesis Data Streams service. This way, you can meet the stringent regulatory requirements and enhance the security of your data.

When using server-side encryption, your Kinesis stream creators and users do not need to manage a master key or cryptographic operations. Your data is automatically encrypted when entering and leaving the Kinesis Data Streams service, so your static data is encrypted. AWS KMS provides all the server-side encryption master key used. AWS by the KMS, can easily be used for CMK Kinesis, which is managed by the AWS, is designated by the user AWS KMS CMK, is introduced into the main or the KMS Key AWS services.

Guess you like

Origin www.cnblogs.com/cloudrivers/p/11619304.html