-
-
Notifications
You must be signed in to change notification settings - Fork 374
Open
Description
I found two issues regarding the filtering of KMS Customer Managed Keys:
- I'm trying to filter my KMS keys for deletion, but the regex doesn't work for the alias.
With this configuration on my config.yaml file:
KMSCustomerKeys:
include_unaliased_keys: true
include:
names_regex:
- alias/.*delete.*
- .*delete.* # or even with thisI get this output:
Even though I have more than one key that matches:
- Also, it seems like the
include_unaliased_keysisn't being correctly detected by the command.
On my config.yaml file I have this:
KMSCustomerKeys:
include_unaliased_keys: trueBut when I run cloud-nuke aws --config config.yaml --region xxx --resource-type kmscustomerkeys I see that is set to false in the terminal:
# AWS Resource Query Parameters
┌─────────────────────────────────────────────┐
| Query Parameter | Value |
| ------------------------------------------- |
| Target Regions | xxx |
| Target Resource Types | kmscustomerkeys |
| List Unaliased KMS Keys | false |
└─────────────────────────────────────────────┘sdpb
Metadata
Metadata
Assignees
Labels
No labels