AWS > MSK >

MSK Cluster Client Broker Encryption

LOW
Source
CloudSploit
ID
msk-cluster-client-broker-encryption

MSK Cluster Client Broker Encryption

Ensure that only TLS encryption between the client and broker feature is enabled for your Amazon MSK clusters.

Amazon MSK in-transit encryption is an optional feature which encrypts data in transit between the client and brokers. Select the Transport Layer Security (TLS) protocol to encrypt data as it travels between brokers and clients within the cluster.

Enable only TLS encryption between the client and broker for all MSK clusters