|
@@ -17,15 +17,18 @@ resource "aws_s3_bucket_acl" "s3_acl_storage" {
|
|
|
|
|
|
resource "aws_s3_bucket_server_side_encryption_configuration" "s3_sse_storage" {
|
|
|
bucket = aws_s3_bucket.storage.id
|
|
|
+
|
|
|
rule {
|
|
|
apply_server_side_encryption_by_default {
|
|
|
- sse_algorithm = "aws:kms"
|
|
|
+ kms_master_key_id = aws_kms_key.s3.arn
|
|
|
+ sse_algorithm = "aws:kms"
|
|
|
}
|
|
|
}
|
|
|
}
|
|
|
|
|
|
resource "aws_s3_bucket_lifecycle_configuration" "s3_lifecyle_storage" {
|
|
|
- bucket = aws_s3_bucket.storage.id
|
|
|
+ bucket = aws_s3_bucket.storage.id
|
|
|
+
|
|
|
rule {
|
|
|
id = "DeleteAfter90Days"
|
|
|
status = "Enabled"
|