storage Encrypted
Parameters
Indicates whether the DB cluster is encrypted. If you specify the `KmsKeyId`
property, then you must enable encryption. If you specify the `SourceDBClusterIdentifier`
property, don't specify this property. The value is inherited from the source DB cluster, and if the DB cluster is encrypted, the specified `KmsKeyId`
property is used. If you specify the `SnapshotIdentifier`
and the specified snapshot is encrypted, don't specify this property. The value is inherited from the snapshot, and the specified `KmsKeyId`
property is used. If you specify the `SnapshotIdentifier`
and the specified snapshot isn't encrypted, you can use this property to specify that the restored DB cluster is encrypted. Specify the `KmsKeyId`
property for the KMS key to use for encryption. If you don't want the restored DB cluster to be encrypted, then don't set this property or set it to `false`
. If you specify both the `StorageEncrypted`
and `SnapshotIdentifier`
properties without specifying the `KmsKeyId`
property, then the restored DB cluster inherits the encryption settings from the DB snapshot that provide. Valid for: Aurora DB clusters and Multi-AZ DB clusters