Aqua CSPM

Open Hadoop HDFS NameNode WebUI

Quick Info

Plugin TitleOpen Hadoop HDFS NameNode WebUI
CloudAWS
CategoryEC2
DescriptionDetermine if TCP port 50070 and 50470 for Hadoop/HDFS NameNode WebUI service is open to the public
More InfoWhile some ports such as HTTP and HTTPS are required to be open to the public to function properly, more sensitive services such as Hadoop/HDFS should be restricted to known IP addresses.
AWS Linkhttp://docs.aws.amazon.com/AWSEC2/latest/UserGuide/authorizing-access-to-an-instance.html
Recommended ActionRestrict TCP port 50070 and 50470 to known IP addresses for Hadoop/HDFS

Detailed Remediation Steps