cloudWatchEncryptionEnabled: boolean
cloudWatchEncryptionKey?: IKey

Custom resource lambda log group encryption key, when undefined default AWS managed key will be used

logRetentionInDays: number

Custom resource lambda log retention in days

prefixes: {
    accelerator: string;
    ssmLog: string;

Accelerator and SSM Log Prefixes

  • accelerator: string
  • ssmLog: string
region: string
rolesInAccounts?: {
    account: string;
    parametersByPath: {
        [key: string]: string;
    region: string;
s3BucketKeyArn?: string
s3BucketName?: string
s3KeyPrefix?: string
sendToCloudWatchLogs: boolean
sendToS3: boolean
ssmKeyDetails: {
    alias: string;
    description: string;

Accelerator CMK Details for SSM

  • alias: string
  • description: string

