- 필수 기능
- 시작하기
- Glossary
- 표준 속성
- Guides
- Agent
- 통합
- 개방형텔레메트리
- 개발자
- Administrator's Guide
- API
- Datadog Mobile App
- CoScreen
- Cloudcraft
- 앱 내
- 서비스 관리
- 인프라스트럭처
- 애플리케이션 성능
- APM
- Continuous Profiler
- 스팬 시각화
- 데이터 스트림 모니터링
- 데이터 작업 모니터링
- 디지털 경험
- 소프트웨어 제공
- 보안
- AI Observability
- 로그 관리
- 관리
This control verifies if OpenSearch domains are deployed within a VPC. Note that this control does not assess the VPC network configuration to determine if the domain is publicly accessible.
Deploying OpenSearch domains within a VPC allows them to communicate with other VPC resources over AWS’s private network, avoiding public internet exposure. This setup enhances security by protecting data in transit. VPCs offer various network controls, such as security groups and network ACLs, to manage and secure access to OpenSearch domains. Transition public OpenSearch domains to VPCs to leverage these security features.
If you set up a domain with a public endpoint, you cannot move it into a VPC later. Instead, you need to create a new domain and transfer your data to it.
For guidance on deploying OpenSearch domains to a VPC and migrating data, refer to the Launching your Amazon OpenSearch Service domains within a VPC and Migrating data between domains and collections using Amazon OpenSearch Ingestion sections of the Amazon OpenSearch Service Developer Guide.