Configure the Customer-Managed Encryption Key (CMEK) for an rewrite.
With CMEK you can use keys generated by Google Cloud's Key Management Service to encrypt the data in your objects. Use this option to configure the CMEK of an object created as part of a rewrite operation. Key names can be found from the Google Cloud console, and are in the projects/{PROJECT_ID}/locations/{LOCATION_ID}/keyRings/{KEY_RING_ID}/cryptoKeys/{CRYPTO_KEY_ID} format.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-04-02 UTC."],[[["This webpage provides access to documentation for various versions of `DestinationKmsKeyName`, ranging from version 2.11.0 to the latest release candidate 2.37.0-rc."],["It details how to configure Customer-Managed Encryption Keys (CMEK) for objects during rewrite operations, enabling the use of keys managed by Google Cloud's Key Management Service for encryption."],["The proper format for specifying a key name when using CMEK is `projects/{PROJECT_ID}/locations/{LOCATION_ID}/keyRings/{KEY_RING_ID}/cryptoKeys/{CRYPTO_KEY_ID}`."],["The `well_known_parameter_name()` function, returning a `char const *`, is available but does not have an associated description."]]],[]]