- 
                Notifications
    You must be signed in to change notification settings 
- Fork 4.3k
feat(events): enable customer managed keys to be used with Archive #35253
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
(This review is outdated)
✅ Updated pull request passes all PRLinter validations. Dismissing previous PRLinter review.
… to supply strings instead of a kms.IKey
| Ready for review! Exemption Request for the  | 
…omer supplies a key
…he EventBus attached to the archive
| effect: iam.Effect.ALLOW, | ||
| conditions: { | ||
| StringEquals: { | ||
| 'kms:EncryptionContext:aws:events:event-bus:arn': props.sourceEventBus.eventBusArn, | 
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Noice!
| Thank you for contributing! Your pull request will be updated from main and then merged automatically (do not update manually, and be sure to allow changes to be pushed to your fork). | 
| Thank you for contributing! Your pull request will be updated from main and then merged automatically (do not update manually, and be sure to allow changes to be pushed to your fork). | 
| Comments on closed issues and PRs are hard for our team to see. | 
Issue # (if applicable)
N/A
Reason for this change
Amazon EventBridge supports Customer Managed Key for Events Archive since 2025/03.
But current L2 Construct does not support Customer Managed Keys as an attribute.
Description of changes
Add
kmsKeyproperty to theEventsArchiveclass.A similar change for EventBus is implemented here: #30493
Describe any new or updated permissions being added
None
Description of how you validated changes
Add unit tests and integ tests.
Checklist
By submitting this pull request, I confirm that my contribution is made under the terms of the Apache-2.0 license