AWS ebs: Fix KMS key sharing documentation links
Summary
Corrected URLs for KMS key sharing guidance by removing extra slashes.
Security assessment
The change fixes documentation links but doesn't modify security content about KMS key sharing.
Evidence
+You can only share snapshots that are unencrypted or that are encrypted using a customer managed key. You can't share snapshots that are encrypted with the default EBS encryption KMS key. If you share encrypted snapshots, then you must also share the KMS key that was used to encrypt the source volume with the target accounts. For more information, see [ Allowing users in other accounts to use a KMS key](https://docs.aws.amazon.com/kms/latest/developerguide/key-policy-modifying-external-accounts.html) in the _AWS Key Management Service Developer Guide_.
Diff
diff --git a/ebs/latest/userguide/snapshot-ami-policy.md b/ebs/latest/userguide/snapshot-ami-policy.md index fdbe5416d..998592b39 100644 --- a//ebs/latest/userguide/snapshot-ami-policy.md +++ b//ebs/latest/userguide/snapshot-ami-policy.md @@ -227 +227 @@ If you do not enable automatic unsharing, the snapshot is shared until it is del -You can only share snapshots that are unencrypted or that are encrypted using a customer managed key. You can't share snapshots that are encrypted with the default EBS encryption KMS key. If you share encrypted snapshots, then you must also share the KMS key that was used to encrypt the source volume with the target accounts. For more information, see [ Allowing users in other accounts to use a KMS key](https://docs.aws.amazon.com//kms/latest/developerguide/key-policy-modifying-external-accounts.html) in the _AWS Key Management Service Developer Guide_. +You can only share snapshots that are unencrypted or that are encrypted using a customer managed key. You can't share snapshots that are encrypted with the default EBS encryption KMS key. If you share encrypted snapshots, then you must also share the KMS key that was used to encrypt the source volume with the target accounts. For more information, see [ Allowing users in other accounts to use a KMS key](https://docs.aws.amazon.com/kms/latest/developerguide/key-policy-modifying-external-accounts.html) in the _AWS Key Management Service Developer Guide_. @@ -665 +665 @@ The following considerations apply to **sharing snapshots across accounts** : - * If you share encrypted snapshots, you must also share the KMS key that was used to encrypt the source volume with the target accounts. For more information, see [Allowing users in other accounts to use a KMS key](https://docs.aws.amazon.com//kms/latest/developerguide/key-policy-modifying-external-accounts.html) in the _AWS Key Management Service Developer Guide_. + * If you share encrypted snapshots, you must also share the KMS key that was used to encrypt the source volume with the target accounts. For more information, see [Allowing users in other accounts to use a KMS key](https://docs.aws.amazon.com/kms/latest/developerguide/key-policy-modifying-external-accounts.html) in the _AWS Key Management Service Developer Guide_.