This message was deleted.
# aws
s
This message was deleted.
h
tested described approach, all what I mentioned looks correct, intermediate provider will work, but still would be grate in someone can share their experience 🙂
f
Did you know you can specify an AWS profile for the state backend? https://www.pulumi.com/docs/concepts/state/#aws-s3 Similarly you can set it for the encryption provider - https://www.pulumi.com/docs/concepts/secrets/#available-encryption-providers So the state and the KMS key can be in different accounts.
h
Cool, thanks, it will simplify the process