'Invalid security token' When creating a data_key/encrypting using KMS inside an EC2 instance

Hello @Gal_Gertzman!

CSFLE does not currently support temporary credentials for AWS. You can authenticate with an access key id and secret access key. But you cannot pass a session token through the KMS providers configuration.

2 Likes