Medium
ELB
Regional
Classic Load Balancers with SSL/HTTPS listeners should use a certificate provided by AWS Certificate Manager
NISTISO 27001HIPAA
Description
Verifies that Classic Load Balancers with SSL/HTTPS listeners use certificates from AWS Certificate Manager, simplifying certificate management and renewal.
Remediation
To update the SSL/HTTPS listener of a Classic Load Balancer to use an AWS Certificate Manager (ACM) certificate, follow these steps:
Steps
- Open the Amazon EC2 console at https://console.aws.amazon.com/ec2/.
- On the navigation pane, under LOAD BALANCING, choose Load Balancers.
- Select the Classic Load Balancer from the list.
- Choose the Listeners tab.
- For the SSL or HTTPS listener, choose Change under the SSL Certificate column.
- In the Select Certificate dialog, choose Choose an existing certificate from AWS Certificate Manager (ACM), select your certificate, and then choose Save.
Compliance
NISTISO 27001HIPAA