Amazon DynamoDB
API Reference


Represents the settings used to enable server-side encryption.



In the following list, the required parameters are described first.


Indicates whether server-side encryption is enabled (true) or disabled (false) on the table.

Type: Boolean

Required: No


The KMS Master Key (CMK) which should be used for the KMS encryption. To specify a CMK, use its key ID, Amazon Resource Name (ARN), alias name, or alias ARN. Note that you should only provide this parameter if the key is different from the default DynamoDB KMS Master Key alias/aws/dynamodb.

Type: String

Required: No


Server-side encryption type:

  • AES256 - Server-side encryption which uses the AES256 algorithm.

  • KMS - Server-side encryption which uses AWS Key Management Service. (default)

Type: String

Valid Values: AES256 | KMS

Required: No

See Also

For more information about using this API in one of the language-specific AWS SDKs, see the following:

On this page: