Obtaining the Bucket Encryption Configuration
Function
After you enable encryption for a bucket, the objects you upload to this bucket will be encrypted with the specified encryption method before they are stored in OBS. When you later download these encrypted objects, OBS decrypts them first and then returns them to you.
This API is used to obtain the encryption configuration of a bucket.
Restrictions
- To obtain the encryption configuration of a bucket, you must be the bucket owner or have the required permission (obs:bucket:GetEncryptionConfiguration granted using IAM or GetEncryptionConfiguration granted using a bucket policy). For details, see Introduction to OBS Access Control, IAM Custom Policies, and Creating a Custom Bucket Policy.
- The mapping between OBS regions and endpoints must comply with what is listed in Regions and Endpoints.
Method
ObsClient.getBucketEncryption(params)
Request Parameters
| Parameter | Type | Mandatory (Yes/No) | Description |
|---|---|---|---|
| Bucket | string | Yes | Explanation: Bucket name Restrictions:
Default value: None |
Responses
| Parameter | Type | Description |
| Status | number | Explanation: HTTP status code returned by the OBS server Value range: A status code is a group of digits indicating the status of a response. It ranges from 2xx (indicating successes) to 4xx or 5xx (indicating errors). For details, see Status Codes. |
| Code | string | Explanation: Error code returned by the OBS server |
| Message | string | Explanation: Error description returned by the OBS server |
| HostId | string | Explanation: Request server ID returned by the OBS server |
| RequestId | string | Explanation: Request ID returned by the OBS server |
| Id2 | string | Explanation: Request ID2 returned by the OBS server |
| Indicator | string | Explanation: Error code details returned by the OBS server |
| Parameter | Type | Description |
|---|---|---|
| Rule | object | Explanation: Bucket encryption configuration rule. For details, see Table 2. |
| Parameter | Type | Description |
|---|---|---|
| ApplyServerSideEncryptionByDefault | object | Explanation: Default encryption configuration of the bucket. For details, see Table 3. |
| BucketKeyEnabled | string | Explanation: Whether to enable the OBS bucket key feature Value range:
|
| Parameter | Type | Description |
|---|---|---|
| SSEAlgorithm | string | Explanation: Server-side encryption algorithm used for the default encryption configuration of a bucket Value range:
|
| KMSDataEncryption | string | Explanation: Encryption algorithm used in SSE-KMS mode |
| KMSMasterKeyID | string | Explanation: ID of the KMS master key used in SSE-KMS mode |
| ProjectID | string | Explanation: ID of the project where the KMS master key belongs in SSE-KMS mode |
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot