AWS redshift: Link to KMS customer managed key authorization docs
Summary
Adds a cross-reference to the KMS customer managed key authorization page and renames the 'Data tokenization' section link to 'Authorizing use of a customer managed key'.
Security assessment
Adds documentation pointing to KMS customer managed key authorization guidance, which relates to encryption key management and access control; it is documentation of a security feature rather than a fix for a specific vulnerability.
Evidence
+ * You can create your own customer managed key in AWS KMS. For more information, see [Create a KMS key](https://docs.aws.amazon.com/kms/latest/developerguide/create-keys.html) and [Authorizing use of an AWS KMS customer managed key with Amazon Redshift (Provisioned) and Amazon Redshift Serverless](./authorizing-kms-customer-managed-key.html).
Diff
diff --git a/redshift/latest/mgmt/security-key-management.md b/redshift/latest/mgmt/security-key-management.md index 786cc5ee6..096f38ef8 100644 --- a//redshift/latest/mgmt/security-key-management.md +++ b//redshift/latest/mgmt/security-key-management.md @@ -17 +17 @@ You can configure your environment to protect data with keys: - * You can create your own customer managed key in AWS KMS. For more information, see [Creating Keys](https://docs.aws.amazon.com/kms/latest/developerguide/create-keys.html). + * You can create your own customer managed key in AWS KMS. For more information, see [Create a KMS key](https://docs.aws.amazon.com/kms/latest/developerguide/create-keys.html) and [Authorizing use of an AWS KMS customer managed key with Amazon Redshift (Provisioned) and Amazon Redshift Serverless](./authorizing-kms-customer-managed-key.html). @@ -36 +36 @@ VPC encryption controls -Data tokenization +Authorizing use of a customer managed key