class aws_cdk.aws_dynamodb.TableEncryption(value, names=None, *, module=None, qualname=None, type=None, start=1, boundary=None)

Bases: Enum

What kind of server-side encryption to apply to this table.



Server-side KMS encryption with a master key managed by AWS.


Server-side KMS encryption with a customer master key managed by customer.

If encryptionKey is specified, this key will be used, otherwise, one will be defined. .. epigraph:

**NOTE**: if ``encryptionKey`` is not specified and the ``Table`` construct creates
a KMS key for you, the key will be created with default permissions. If you are using
CDKv2, these permissions will be sufficient to enable the key for use with DynamoDB tables.
If you are using CDKv1, make sure the feature flag ``@aws-cdk/aws-kms:defaultKeyPolicies``
is set to ``true`` in your ``cdk.json``.

Server-side KMS encryption with a master key owned by AWS.