Medium ELB Regional

Classic Load Balancers with SSL/HTTPS listeners should use a certificate provided by AWS Certificate Manager

NISTISO 27001HIPAA

Description

This check ensures that Classic Load Balancers with SSL/HTTPS listeners are using certificates provided by AWS Certificate Manager (ACM). This helps in managing the renewal and deployment of the certificates used by the load balancers.


Remediation

To update the SSL/HTTPS listener of a Classic Load Balancer to use an AWS Certificate Manager (ACM) certificate, follow these steps:

Steps

  1. Open the Amazon EC2 console at https://console.aws.amazon.com/ec2/.
  2. On the navigation pane, under LOAD BALANCING, choose Load Balancers.
  3. Select the Classic Load Balancer from the list.
  4. Choose the Listeners tab.
  5. For the SSL or HTTPS listener, choose Change under the SSL Certificate column.
  6. In the Select Certificate dialog, choose Choose an existing certificate from AWS Certificate Manager (ACM), select your certificate, and then choose Save.

Compliance

NISTISO 27001HIPAA