Elasticsearch domains should have error logging to CloudWatch Logs enabled

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Description

This control confirms whether Elasticsearch domains are configured to forward error logs to CloudWatch Logs.

It’s recommended to enable error logging for Elasticsearch domains and forward these logs to CloudWatch Logs for retention and analysis. Error logs from the domain can play a key role in security and access audits and can help in diagnosing availability issues.

Remediation

For details on how to activate log publishing, refer to the Enabling log publishing (console) section in the Amazon OpenSearch Service Developer Guide.