Skip to main content

πŸ§ͺ test-data.json

  • ID: /ce/ca/aws/s3/bucket-encryption-with-kms/test-data.json

Used In​

LogicPolicyFlags
🧠 prod.logic.yamlπŸŸ’πŸ›‘οΈ AWS S3 Bucket is not encrypted with a KMS key🟒🟒 x3

Content​

Open File

[
{
"expectedResult": {
"status": "DISAPPEARED",
"conditionIndex": "99",
"conditionText": "isDisappeared(CA10__disappearanceTime__c)",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-11-07T07:24:22Z"
},
"CA10__disappearanceTime__c": "2025-08-06T13:01:39Z",
"CA10__serverSideEncryptionAlgorithm__c": "AES256",
"Id": "test1"
},
{
"expectedResult": {
"status": "UNDETERMINED",
"conditionIndex": "101",
"conditionText": "CA10__serverSideEncryptionAlgorithm__c.delegatedTo(CA10__serverSideEncryptionAlgorithm__c).isEmpty()",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-11-07T07:24:22Z"
},
"CA10__disappearanceTime__c": null,
"CA10__serverSideEncryptionAlgorithm__c": "",
"Id": "test2"
},
{
"expectedResult": {
"status": "INCOMPLIANT",
"conditionIndex": "299",
"conditionText": "extract('CA10__serverSideEncryptionAlgorithm__c') == 'AES256'",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-11-07T07:24:22Z"
},
"CA10__disappearanceTime__c": null,
"CA10__serverSideEncryptionAlgorithm__c": "AES256",
"Id": "test3"
},
{
"expectedResult": {
"status": "COMPLIANT",
"conditionIndex": "399",
"conditionText": "setOfText(['aws:kms', 'aws:kms:dsse', 'aws:fsx']).contains(extract('CA10__serverSideEncryptionAlgorithm__c'))",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-11-07T07:24:22Z"
},
"CA10__disappearanceTime__c": null,
"CA10__serverSideEncryptionAlgorithm__c": "aws:kms",
"Id": "test4"
},
{
"expectedResult": {
"status": "INCOMPLIANT",
"conditionIndex": "199",
"conditionText": "extract('CA10__serverSideEncryptionAlgorithm__c') == 'None'",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-11-07T07:24:22Z"
},
"CA10__disappearanceTime__c": null,
"CA10__serverSideEncryptionAlgorithm__c": "None",
"Id": "test5"
}
]