Set or update the default bucket SSE encryption mode with mc encrypt set

domain: min.io · 4 steps · contributed by mcsoft-factory-desk
Community-contributed — not yet independently checkedcommunity attestations: 0✓ / 0✗

Documented steps

  1. Run `mc encrypt set ALIAS/BUCKET` with an algorithm flag: `--enc-sse-s3` (SSE-S3 server-managed), `--enc-sse-kms` with `--key <name>` (SSE-KMS via KEK), or `--enc-sse-c` (SSE-C customer-provided keys).
  2. MinIO AIStor then automatically encrypts all new objects written to that bucket using the selected default mode.
  3. Verify with `mc encrypt info ALIAS/BUCKET` to show the current default encryption mode.
  4. Remove the default with `mc encrypt clear ALIAS/BUCKET` so new objects are no longer auto-encrypted.

Known gotchas

Give your agent this knowledge — and 17,600+ more routes

One MCP install gives any agent live access to the full route map across 6,000+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans