Represents the settings used to enable server-side encryption.


Enabled => Bool

  Indicates whether server-side encryption is enabled (true) or disabled
(false) on the table. If enabled (true), server-side encryption type is
set to C<KMS>. If disabled (false) or not specified, server-side
encryption is set to AWS owned CMK.

KMSMasterKeyId => Str

  The KMS Master Key (CMK) which should be used for the KMS encryption.
To specify a CMK, use its key ID, Amazon Resource Name (ARN), alias
name, or alias ARN. Note that you should only provide this parameter if
the key is different from the default DynamoDB KMS Master Key

SSEType => Str

  Server-side encryption type:
  • AES256 - Server-side encryption which uses the AES256 algorithm (not applicable).

  • KMS - Server-side encryption which uses AWS Key Management Service. Key is stored in your account and is managed by AWS KMS (KMS charges apply).


