---
title: >-
  Elasticsearch domains should use the latest Elasticsearch or OpenSearch engine
  version
description: Datadog, the leading service for cloud-scale monitoring.
breadcrumbs: >-
  Docs > Datadog Security > OOTB Rules > Elasticsearch domains should use the
  latest Elasticsearch or OpenSearch engine version
---

> For the complete documentation index, see [llms.txt](https://docs.datadoghq.com/llms.txt).

# Elasticsearch domains should use the latest Elasticsearch or OpenSearch engine version
 
## Description{% #description %}

Upgrade your Amazon Elasticsearch Service (ES) engine to the latest supported version. Amazon's Elasticsearch-compatible engine line ends at version 7.10.0, so the check accepts exactly Elasticsearch 7.10.0. Successor engine releases use the `OpenSearch_` prefix, and the check accepts OpenSearch 3.7.0 or newer.

## Remediation{% #remediation %}

To learn how to upgrade your Elasticsearch domain to a newer version using the AWS Management Console, please refer to the [Elasticsearch Version Upgrade Guide](https://docs.aws.amazon.com/elasticsearch-service/latest/developerguide/es-version-migration.html#starting-upgrades). This documentation provides detailed steps for initiating and completing the upgrade process, helping you maintain a secure and up-to-date Elasticsearch environment.
