Who enables encryption of data at rest for Amazon Elastic Block Store (Amazon EBS)?
AWS Support
AWS customers
AWS Key Management Service (AWS KMS)
AWS Trusted Advisor
Explanations:
AWS Support provides assistance and guidance but does not enable encryption of data at rest for Amazon EBS. This task is performed by customers through AWS services.
AWS customers enable encryption of data at rest for Amazon EBS by configuring their EBS volumes to use encryption during creation or enabling it on existing volumes using AWS Key Management Service (AWS KMS).
AWS Key Management Service (AWS KMS) provides the key management for encryption but does not directly enable encryption of data at rest for EBS. It is used by customers to manage encryption keys used for EBS volume encryption.
AWS Trusted Advisor is a tool that provides recommendations for best practices but does not enable encryption of data at rest for Amazon EBS. It can offer insights on whether encryption is enabled but does not perform the action itself.