Cloud Key Management Service (Cloud KMS) settings for a
CMEK-protected cluster.
Attribute
Name
Description
kms_key_name
str
Describes the Cloud KMS encryption key that will be used to
protect the destination Bigtable cluster. The requirements
for this key are:
1) The Cloud Bigtable service account associated with the
project that contains this cluster must be granted the
cloudkms.cryptoKeyEncrypterDecrypter role on the CMEK
key.
2) Only regional keys can be used and the region of the CMEK
key must match the region of the cluster. Values are of
the form
projects/{project}/locations/{___location}/keyRings/{keyring}/cryptoKeys/{key}
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-07 UTC."],[],[]]