- 필수 기능
- 시작하기
- Glossary
- 표준 속성
- Guides
- Agent
- 통합
- 개방형텔레메트리
- 개발자
- Administrator's Guide
- API
- Datadog Mobile App
- CoScreen
- Cloudcraft
- 앱 내
- 서비스 관리
- 인프라스트럭처
- 애플리케이션 성능
- APM
- Continuous Profiler
- 스팬 시각화
- 데이터 스트림 모니터링
- 데이터 작업 모니터링
- 디지털 경험
- 소프트웨어 제공
- 보안
- AI Observability
- 로그 관리
- 관리
Implement encryption at rest for your Amazon Elasticsearch (ES) domain with the AWS KMS service.
Implementing encryption at rest protects your domain from unauthorized access and ensures security and compliance requirements are met.
Follow the Enabling Encryption of Data at Rest docs to learn how to implement encryption for your domain.
Run describe-elasticsearch-domain
with your ES domain to return configuration metadata.
aws es describe-elasticsearch-domain
--domain-name your-es-domain
Run create-elasticsearch-domain
with your domain name and encryption-at-rest-options
. Use the metadata returned in the previous step to create and relaunch your ES domain to enable at-rest encryption.
aws es create-elasticsearch-domain
--domain-name your-es-domain
...
--encryption-at-rest-options Enabled=true,KmsKeyId="abcdabcd-aaaa-bbbb-cccc-abcdabcdabcd"