π‘οΈ AWS Redshift Cluster automatic major version upgrade is not enabledπ’
- Contextual name: π‘οΈ Cluster automatic major version upgrade is not enabledπ’
- ID:
/ce/ca/aws/redshift/cluster-version-upgrade - Tags:
- π’ Policy with categories
- π’ Policy with type
- π’ Production policy
- Policy Type:
COMPLIANCE_POLICY - Policy Categories:
RELIABILITY
Logicβ
- π§ prod.logic.yamlπ’
Similar Policiesβ
- AWS Security Hub: [Redshift.6] Amazon Redshift should have automatic upgrades to major versions enabled
- Cloud Conformity: Redshift Cluster Allow Version Upgrade
Descriptionβ
Descriptionβ
This policy identifies AWS Redshift Clusters that do not have automatic major version upgrades enabled. When enabled, this feature allows major engine version upgrades to be applied automatically during the clusterβs scheduled maintenance window.
Rationaleβ
Keeping the database engine up to date is critical for the long-term health, performance, and security of your Redshift cluster. Major version upgrades often introduce new features, expanded SQL support, improved integrations, and performance optimizations that can reduce query execution times and resource usage. While minor versions primarily deliver security patches and bug fixes, major versions address architectural improvements and remove deprecated or insecure legacy behaviors.
Enabling automatic major version upgrades reduces the operational overhead of planning and executing version migrations manually.
Impactβ
If automatic upgrades are not enabled, your team must track engine end-of-life dates and perform manual upgrades, increasing the risk of version lag, potential vulnerabilities, and operational errors.
... see more
Remediationβ
Remediationβ
Enable Automatic Major Version Upgradesβ
Enabling automatic major version upgrades ensures that the cluster receives new engine versions during its scheduled maintenance window, reducing manual maintenance overhead and improving long-term stability, performance, and security.
From Command Lineβ
Run the following AWS CLI command to enable automatic major version upgrades for the selected Redshift cluster:
```sh
aws redshift modify-cluster \
--cluster-identifier {{cluster-id}} \
--allow-version-upgrade
```