Skip to main content

OpenSearch Domain Node-to-Node Encryption Is Not Enabled

Overview​

Node-to-node encryption adds an extra security layer, enhancing the inherent features of Amazon OpenSearch. This configuration thwarts potential attackers' attempts to intercept communication between OpenSearch nodes, thus ensuring the cluster's overall security.

Vendor​

AWS

Cloud Service​

OpenSearch

Opensearch.3

References​

https://docs.aws.amazon.com/opensearch-service/latest/developerguide/ntn.html, https://docs.aws.amazon.com/opensearch-service/latest/APIReference/API_NodeToNodeEncryptionOptions.html

Severity​

3

Item Types​

AWS::OpenSearch::Domain