{
	"id": "eaac24bf-962d-4840-b610-3cbedbfcbbad",
	"created_at": "2026-04-06T00:15:20.280558Z",
	"updated_at": "2026-04-10T03:21:56.29385Z",
	"deleted_at": null,
	"sha1_hash": "8d2052bff5f74d829e75653b35d30faf854b5a7a",
	"title": "Share an Amazon EBS snapshot with other AWS accounts",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 50440,
	"plain_text": "Share an Amazon EBS snapshot with other AWS accounts\r\nArchived: 2026-04-05 12:45:36 UTC\r\nYou can modify the permissions of a snapshot if you want to share it with other AWS accounts. You can share\r\nsnapshots publicly with all other AWS accounts, or you can share them privately with individual AWS accounts\r\nthat you specify. Users that you have authorized can use the snapshots that you share to create their own EBS\r\nvolumes, while your original snapshot remains unaffected.\r\nImportant\r\nWhen you share a snapshot, you are giving others access to all of the data on the snapshot. Share snapshots only\r\nwith people that you trust with all of your snapshot data.\r\nTo prevent the public sharing of snapshots, you can enable Block public access for Amazon EBS snapshots.\r\nTopics\r\nBefore you share a snapshot\r\nShare a snapshot\r\nShare a KMS key\r\nUse shared snapshots\r\nDetermine the use of snapshots that you share\r\nThe following considerations apply to sharing snapshots:\r\nIf block public access for snapshots is enabled for the Region, attempts to publicly share snapshots will be\r\nblocked. Snapshots can still be privately shared.\r\nSnapshots are constrained to the Region in which they were created. To share a snapshot with another\r\nRegion, copy the snapshot to that Region and then share the copy. For more information, see Copy an\r\nAmazon EBS snapshot.\r\nYou can't share snapshots that are encrypted with the default AWS managed key. You can only share\r\nsnapshots that are encrypted with a customer managed key. For more information, see Creating Keys in the\r\nAWS Key Management Service Developer Guide.\r\nYou can share only unencrypted snapshots publicly.\r\nWhen you share an encrypted snapshot, you must also share the customer managed key used to encrypt the\r\nsnapshot. For more information, see Share the KMS key used to encrypt a shared Amazon EBS snapshot.\r\nhttps://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ebs-modifying-snapshot-permissions.html\r\nPage 1 of 2\n\nYou can share a snapshot publicly or with specific AWS accounts.\r\nTo share a snapshot\r\n1. Open the Amazon EC2 console at https://console.aws.amazon.com/ec2/.\r\n2. In the navigation pane, choose Snapshots.\r\n3. Select the snapshot to share, and then choose Actions, Modify permissions.\r\n4. Specify the snapshot's permissions. Current setting indicates the snapshot's current sharing permissions.\r\nTo share the snapshot publicly with all AWS accounts, choose Public.\r\nTo share the snapshot privately with specific AWS accounts, choose Private. Then, in the Sharing\r\naccounts section, choose Add account, and enter the 12-digit account ID (without hyphens) of the\r\naccount to share with.\r\n5. Choose Save changes.\r\nYou can use AWS CloudTrail to monitor whether a snapshot that you have shared with others is copied or used to\r\ncreate a volume. The following events are logged in CloudTrail when an action is taken on a snapshot you have\r\nshared::\r\nSharedSnapshotCopyInitiated — A shared snapshot is being copied.\r\nSharedSnapshotVolumeCreated — A shared snapshot is being used to create a volume.\r\nFor more information about using CloudTrail, see Log Amazon EC2 and Amazon EBS API calls with AWS\r\nCloudTrail.\r\nSource: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ebs-modifying-snapshot-permissions.html\r\nhttps://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ebs-modifying-snapshot-permissions.html\r\nPage 2 of 2",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"MITRE"
	],
	"references": [
		"https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ebs-modifying-snapshot-permissions.html"
	],
	"report_names": [
		"ebs-modifying-snapshot-permissions.html"
	],
	"threat_actors": [],
	"ts_created_at": 1775434520,
	"ts_updated_at": 1775791316,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/8d2052bff5f74d829e75653b35d30faf854b5a7a.pdf",
		"text": "https://archive.orkl.eu/8d2052bff5f74d829e75653b35d30faf854b5a7a.txt",
		"img": "https://archive.orkl.eu/8d2052bff5f74d829e75653b35d30faf854b5a7a.jpg"
	}
}