Skip to main content

๐Ÿ’ผ [RedshiftServerless.1] Amazon Redshift Serverless workgroups should use enhanced VPC routing

  • Contextual name: ๐Ÿ’ผ [RedshiftServerless.1] Amazon Redshift Serverless workgroups should use enhanced VPC routing

  • ID: /frameworks/aws-fsbp-v1.0.0/redshift-serverless/01

  • Located in: ๐Ÿ’ผ Redshift Serverless

Descriptionโ€‹

If enhanced VPC routing is disabled for an Amazon Redshift Serverless workgroup, Amazon Redshift routes traffic through the internet, including traffic to other services within the AWS network. If you enable enhanced VPC routing for a workgroup, Amazon Redshift forces all COPY and UNLOAD traffic between your cluster and your data repositories through your virtual private cloud (VPC) based on the Amazon VPC service. With enhanced VPC routing, you can use standard VPC features to control the flow of data between your Amazon Redshift cluster and other resources. This includes features such as VPC security groups and endpoint policies, network access control lists (ACLs), and Domain Name System (DNS) servers. You can also use VPC flow logs to monitor COPY and UNLOAD traffic.

Similarโ€‹

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags