Who enables encryption of data at rest for Amazon Elastic Block Store (Amazon EBS)?
AWS Support
AWS customers
AWS Key Management Service (AWS KMS)
AWS Trusted Advisor
Explanations:
AWS Support does not directly enable encryption of data at rest for Amazon EBS; it provides assistance and guidance but does not perform the configuration.
AWS customers enable encryption of data at rest for Amazon EBS by configuring the settings during volume creation or by modifying existing volumes to use encryption.
AWS Key Management Service (AWS KMS) is used to manage encryption keys, but it is the AWS customers who enable encryption on their EBS volumes using KMS-managed keys.
AWS Trusted Advisor provides best practices and recommendations but does not enable encryption for EBS volumes; it does not perform any configurations on AWS services.