Medium Elasticsearch Regional

Elasticsearch domains should have audit logging enabled

NIST

Description

This check ensures that Elasticsearch domains have audit logging enabled, which is crucial for security and compliance auditing.


Remediation

To enable audit logging for an Elasticsearch domain, follow these steps:

Steps

  1. Open the Amazon Elasticsearch Service console at https://console.aws.amazon.com/es/.
  2. Choose the domain that you want to modify.
  3. In the navigation pane, under Domain configuration, choose Audit logs.
  4. Select Enable for Audit logs.
  5. Choose Save changes.

Compliance

NIST