High
RedshiftServerless
Regional
Amazon Redshift Serverless workgroups should use enhanced VPC routing
Description
Flags Amazon Redshift Serverless workgroups that do not have enhanced VPC routing enabled. Without it, COPY/UNLOAD traffic between the workgroup and other AWS services can leave the VPC, bypassing VPC endpoints and flow logs.
Remediation
Enable enhanced VPC routing on every Redshift Serverless workgroup.
Steps
- Open the Amazon Redshift Serverless console and select the workgroup.
- Choose Edit.
- Set Enhanced VPC routing to Enabled.
- Save the changes.