Ensure that your Amazon Managed Streaming for Kafka (MSK) clusters are using the latest security features in Apache Kafka, such as Apache Zookeeper, in order to adhere to security best practices and benefit from enhanced protection against cyberattacks.
excellence
efficiency
optimisation
Apache Kafka version 2.5.1 includes several bug fixes, security patches, and new features, including encryption in-transit for Apache Zookeeper and administration clients. When your Amazon MSK clusters are using the latest version of Apache Kafka (version 2.5.1 or newer), you benefit from new features and enhancements, bug fixes and security patches.
Audit
To determine the Apache Kafka version used for your Amazon MSK clusters, perform the following operations:
Remediation / Resolution
To benefit from all the security features and improvements that come with the latest version of Apache Kafka (version 2.5.1 or newer), perform the following operations:
Note 1: You can't make other updates to your Amazon MSK cluster while the Apache Kafka version is being upgraded, however, you can continue to produce and consume data during the upgrade.Note 2: Check your client-side software to make sure its version enables you to use the features and improvements of the cluster's new Apache Kafka version.
References
- AWS Documentation
- Amazon MSK FAQs
- Apache Kafka versions
- Supported Apache Kafka versions
- Welcome to the Amazon MSK Developer Guide
- AWS Command Line Interface (CLI) Documentation
- kafka
- list-clusters
- describe-cluster
- get-compatible-kafka-versions
- update-cluster-kafka-version