Which of the following supports this requirement for AWS resources that are encrypted by AWS KMS?

1 Comment

  1. Alan
    Author

    I evaluate that the answer is:
    Use AWS services that replicate data across regions, and re-wrap the data encryption key created in the source region by using the CMK in the target region so that the target region’s CMK can decrypt the database encryption key.

Leave a Reply

Your email address will not be published. Required fields are marked *

three × three =