Class EncryptionConfig (2.32.0)

EncryptionConfig(mapping=None, *, ignore_unknown_fields=False, **kwargs)

Cloud Key Management Service (Cloud KMS) settings for a CMEK-protected cluster.

Attribute

Name Description
kms_key_name str
Describes the Cloud KMS encryption key that will be used to protect the destination Bigtable cluster. The requirements for this key are: 1) The Cloud Bigtable service account associated with the project that contains this cluster must be granted the cloudkms.cryptoKeyEncrypterDecrypter role on the CMEK key. 2) Only regional keys can be used and the region of the CMEK key must match the region of the cluster. Values are of the form projects/{project}/locations/{___location}/keyRings/{keyring}/cryptoKeys/{key}