AWS Security ChangesHomeSearch

AWS redshift: Recommend verify-full for Redshift SSL connections

Service: redshift · 2026-09-27 · Documentation medium

File: redshift/latest/mgmt/python-configuration-options.md · Type: encryption

Summary

Adds a note recommending the verify-full SSL mode for connections whenever possible.

Security assessment

Documents a security best practice to use verify-full SSL mode, which enforces certificate validation and mitigates MITM/eavesdropping on connections; it is guidance rather than a fix for a specific vulnerability.

Evidence

+We recommend using `verify-full` for SSL connections whenever possible.

Diff

diff --git a/redshift/latest/mgmt/python-configuration-options.md b/redshift/latest/mgmt/python-configuration-options.md
index d1a807eee..d3cb62b60 100644
--- a//redshift/latest/mgmt/python-configuration-options.md
+++ b//redshift/latest/mgmt/python-configuration-options.md
@@ -715,0 +716,4 @@ The security of the connection to Amazon Redshift. You can specify either of the
+###### Note
+
+We recommend using `verify-full` for SSL connections whenever possible.
+