Plugin Title | Open Hadoop HDFS NameNode WebUI |
Cloud | AWS |
Category | EC2 |
Description | Determine if TCP port 50070 and 50470 for Hadoop/HDFS NameNode WebUI service is open to the public |
More Info | While some ports such as HTTP and HTTPS are required to be open to the public to function properly, more sensitive services such as Hadoop/HDFS should be restricted to known IP addresses. |
AWS Link | http://docs.aws.amazon.com/AWSEC2/latest/UserGuide/authorizing-access-to-an-instance.html |
Recommended Action | Restrict TCP port 50070 and 50470 to known IP addresses for Hadoop/HDFS |