More Info:

This rule checks whether connections to Amazon OpenSearch domains are required to use HTTPS. Enforcing HTTPS helps enhance the security of data in transit by encrypting communication between clients and the OpenSearch domain. The rule is marked as non-compliant if the ‘EnforceHTTPS’ option is not set to ‘true’ or if it is set to ‘true’ and the ‘TLSSecurityPolicy’ is not set to a valid TLS policy.

Risk Level

Medium

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

Using Console