Redshift cluster is not publicly accessible
Incident Management is now generally available! Incident Management is now generally available!
<  Back to rules search

Redshift cluster is not publicly accessible

redshift

Classification:

compliance

Set up the redshift integration.

Overview

Description

Confirm Redshift clusters are not publicly available.

Rationale

Publicly available Redshift clusters have a public IP address, which gives any machine the opportunity to attempt to connect to your clusters. Malicious activity, such as SQL injections or distributed denial-of-service (DDoS) attacks, can occur if a connection is established.

Remediation

Console

Follow the [Managing clusters in a VPC][7] docs to learn how to modify public accessibility for your clusters.