AWS CloudFormation
User Guide (Version )

The AWS Documentation website is getting a new look!
Try it now and let us know what you think. Switch to the new look >>

You can return to the original look by selecting English in the language selector above.

AWS::KinesisFirehose::DeliveryStream KMSEncryptionConfig

The KMSEncryptionConfig property type specifies the AWS Key Management Service (AWS KMS) encryption key that Amazon Simple Storage Service (Amazon S3) uses to encrypt data delivered by the Amazon Kinesis Data Firehose (Kinesis Data Firehose) stream.


To declare this entity in your AWS CloudFormation template, use the following syntax:


{ "AWSKMSKeyARN" : String }





The Amazon Resource Name (ARN) of the AWS KMS encryption key that Amazon S3 uses to encrypt data delivered by the Kinesis Data Firehose stream. The key must belong to the same region as the destination S3 bucket.

Required: Yes

Type: String

Minimum: 1

Maximum: 512

Pattern: arn:.*

Update requires: No interruption

On this page: