Encryption for existing domains — data at rest and node-to-node encryption enabled
AI Impact Summary
Amazon OpenSearch Service now supports enabling encryption of data at rest and node-to-node encryption, representing a significant shift in data protection capabilities. This change mandates that existing domains running Elasticsearch 6.7 or later cannot disable encryption, requiring immediate planning for migration or continued operation with the new security controls. This impacts any team utilizing OpenSearch for sensitive data requiring compliance with regulations like HIPAA or GDPR.
Affected Systems
- Date
- Date not specified
- Change type
- capability
- Severity
- info