Amazon Athena Connector

Amazon Athena Connector

Data encryption in Amazon Athena sources

Data encryption in Amazon Athena sources

You can run queries in Amazon Athena on encrypted data in Amazon S3. You must run the Amazon Athena queries in the region where Amazon S3 is hosted. You can also encrypt the query results in Amazon S3.
Select the type of the encryption in the
Encryption Type
field under the Amazon Athena advanced source properties.
Use the customer master key ID generated by AWS Key Management Service for server-side encryption.
You can configure the following types of encryption:
None
The data is not encrypted.
SSE-S3
If you select the
SSE-S3
encryption type, Amazon Athena encrypts the file using the Amazon S3-managed key for server-side encryption.
SSE-KMS
If you select the
SSE-KMS
encryption type, Amazon Athena encrypts the file using the AWS KMS-managed key or Amazon Resource Name (ARN) for server-side encryption.
CSE-KMS
If you select the
CSE-KMS
encryption type, Amazon Athena encrypts the file using the AWS KMS-managed key for client-side encryption.