Documentation Index

Fetch the complete documentation index at: https://cli.ncloud-docs.com/llms.txt

Use this file to discover all available pages before exploring further.

put-bucket-encryption

Prev Next

Available in Classic and VPC

Register or override the default server-side encryption (SSE) settings for an Ncloud Storage bucket. If default encryption is enabled for the bucket, these settings are automatically applied during upload without the need to specify a separate encryption header.

Commands

The command statement is as follows:

aws s3api put-bucket-encryption --bucket <value> --server-side-encryption-configuration <value> [--options]

Parameter

The following describes the parameters.

Parameter Type Required Description Restrictions
--bucket <value> string Y Bucket name -
--server-side-encryption-configuration <value> string Y Encryption settings. Specify the ApplyServerSideEncryptionByDefault object in the Rules list. Only exactly one Rules object is allowed.
--endpoint-url <value> string Y Specify the default URL for command calls. It is only available for the KR Region. See Ncloud Storage overview for call domain information.
--cli-input-json | --cli-input-yaml string N Enter arguments from the provided json or yaml string. You can't specify json and yaml together.
--generate-cli-skeleton <value> integer N Create a parameter template that can be used as input later without executing the API command. -
--debug boolean N Use debug logging. -
--no-verify-ssl boolean N Redefine the default behavior for validating SSL certificates. -
--no-paginate boolean N Disable automatic pagination, call only the first page for results. -
--output <value> string N Specify the format of response results. Available options
  • json
  • text
  • table
  • yaml
  • yaml-stream
--query <value> string N JMESPath query to use for filtering response data -
--profile <value> string N Use a specific profile in the credentials file. -
--region <value> string N Specify the Region. Only KR is supported.
--color <value> string N Set output color. Available options
  • on
  • off
  • auto
--no-sign-request boolean N Disable credential loading. -
--ca-bundle <value> string N Specify the CA certificate to use when verifying SSL certificates. -
--cli-read-timeout <value> int N Maximum read time; entering 0 changes it to a blocked status instead of a timeout. It is set to 60 seconds by default.
--cli-connect-timeout <value> int N Maximum connection time; entering 0 changes it to a blocked status instead of a timeout. It is set to 60 seconds by default.
--no-cli-pager boolean N Disable the CLI pager for response values. -
--cli-auto-prompt boolean N Enable automatic prompting for CLI input parameters. -
--no-cli-auto-prompt boolean N Disable automatic prompting for CLI input parameters. -

Permissions

If a sub account user wants to use this command, they need the Change/PutEncryptionConfiguration action permission.

Examples

This section describes an example of calling and responding to the put-bucket-encryption command.

Set SSE-KMS (Ncloud management key)

Call examples

The following is an example of setting the bucket's default encryption algorithm to aws:kms. Afterward, SSE-KMS will be automatically applied to objects uploaded without an encryption header. The following is a call example.

aws s3api put-bucket-encryption --endpoint-url=http://kr.ncloudstorage.com --bucket test1 --server-side-encryption-configuration '{"Rules":[{"ApplyServerSideEncryptionByDefault":{"SSEAlgorithm":"aws:kms"}}]}'

Set SSE-S3 (AES256)

Call examples

The following is an example of setting the bucket's default encryption algorithm to AES256. The following is a call example.

aws s3api put-bucket-encryption --endpoint-url=http://kr.ncloudstorage.com --bucket test1 --server-side-encryption-configuration '{"Rules":[{"ApplyServerSideEncryptionByDefault":{"SSEAlgorithm":"AES256"}}]}'

Related commands

Related commands are as follows: