Medium Elasticsearch Regional

Elasticsearch domains should have audit logging enabled

NIST

Description

Confirms that Elasticsearch domains have audit logging enabled for security and compliance purposes.


Remediation

To enable audit logging for an Elasticsearch domain, follow these steps:

Steps

  1. Open the Amazon Elasticsearch Service console at https://console.aws.amazon.com/es/.
  2. Choose the domain that you want to modify.
  3. In the navigation pane, under Domain configuration, choose Audit logs.
  4. Select Enable for Audit logs.
  5. Choose Save changes.

Compliance

NIST